Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-4070

Опубликовано: 27 сент. 2008
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 10

Описание

Heap-based buffer overflow in Mozilla Thunderbird before 2.0.0.17 and SeaMonkey before 1.1.12 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long header in a news article, related to "canceling [a] newsgroup message" and "cancelled newsgroup messages."

РелизСтатусПримечание
dapper

released

1.5.0.13+1.5.0.15~prepatch080614g-0ubuntu0.6.06.1
devel

DNE

feisty

released

1.5.0.13+1.5.0.15~prepatch080614g-0ubuntu0.7.04.1
gutsy

DNE

hardy

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

released

2.0.0.17+nobinonly-0ubuntu1
feisty

DNE

gutsy

released

2.0.0.17+nobinonly-0ubuntu0.7.10.1
hardy

released

2.0.0.17+nobinonly-0ubuntu0.8.04.1
upstream

released

2.0.0.17

Показывать по

EPSS

Процентиль: 82%
0.01718
Низкий

10 Critical

CVSS2

Связанные уязвимости

redhat
почти 17 лет назад

Heap-based buffer overflow in Mozilla Thunderbird before 2.0.0.17 and SeaMonkey before 1.1.12 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long header in a news article, related to "canceling [a] newsgroup message" and "cancelled newsgroup messages."

nvd
почти 17 лет назад

Heap-based buffer overflow in Mozilla Thunderbird before 2.0.0.17 and SeaMonkey before 1.1.12 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long header in a news article, related to "canceling [a] newsgroup message" and "cancelled newsgroup messages."

debian
почти 17 лет назад

Heap-based buffer overflow in Mozilla Thunderbird before 2.0.0.17 and ...

github
около 3 лет назад

Heap-based buffer overflow in Mozilla Thunderbird before 2.0.0.17 and SeaMonkey before 1.1.12 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long header in a news article, related to "canceling [a] newsgroup message" and "cancelled newsgroup messages."

oracle-oval
почти 17 лет назад

ELSA-2008-0908: thunderbird security update (MODERATE)

EPSS

Процентиль: 82%
0.01718
Низкий

10 Critical

CVSS2