Search CVE reports


Toggle filters

2961 – 2970 of 3080 results


CVE-2006-5462

Medium priority

Some fixes available 5 of 6

Mozilla Network Security Service (NSS) library before 3.11.3, as used in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6, when using an RSA key with exponent 3, does not properly handle extra...

3 affected packages

firefox, mozilla-thunderbird, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
mozilla-thunderbird
xulrunner
Show less packages

CVE-2006-5783

Medium priority
Not affected

Firefox 1.5.0.7 on Kubuntu Linux allows remote attackers to cause a denial of service (crash) via a long URL in an A tag. NOTE: this issue has been disputed by several vendors, who could not reproduce the report. In addition, the...

1 affected package

firefox

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
Show less packages

CVE-2006-5633

Medium priority
Fixed

Firefox 1.5.0.7 and 2.0, and Seamonkey 1.1b, allows remote attackers to cause a denial of service (crash) by creating a range object using createRange, calling selectNode on a DocType node (DOCUMENT_TYPE_NODE), then calling...

1 affected package

firefox

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
Show less packages

CVE-2006-4842

Medium priority
Not affected

The Netscape Portable Runtime (NSPR) API 4.6.1 and 4.6.2, as used in Sun Solaris 10, trusts user-specified environment variables for specifying log files even when running from setuid programs, which allows local users to create...

1 affected package

firefox

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
Show less packages

CVE-2006-4571

Medium priority

Some fixes available 5 of 6

Multiple unspecified vulnerabilities in Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allow remote attackers to cause a denial of service (crash), corrupt memory, and possibly execute...

6 affected packages

firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-granparadiso
lightning-sunbird
midbrowser
mozilla-thunderbird
xulrunner
Show less packages

CVE-2006-4569

Medium priority

Some fixes available 6 of 7

The popup blocker in Mozilla Firefox before 1.5.0.7 opens the "blocked popups" display in the context of the Location bar instead of the subframe from which the popup originated, which might make it easier for remote user-assisted...

5 affected packages

firefox, firefox-3.0, lightning-sunbird, midbrowser, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
lightning-sunbird
midbrowser
xulrunner
Show less packages

CVE-2006-4568

Medium priority

Some fixes available 2 of 3

Mozilla Firefox before 1.5.0.7 and SeaMonkey before 1.0.5 allows remote attackers to bypass the security model and inject content into the sub-frame of another site via targetWindow.frames[n].document.open(), which facilitates...

5 affected packages

firefox, firefox-granparadiso, lightning-sunbird, midbrowser, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-granparadiso
lightning-sunbird
midbrowser
xulrunner
Show less packages

CVE-2006-4567

Medium priority
Fixed

Mozilla Firefox before 1.5.0.7 and Thunderbird before 1.5.0.7 makes it easy for users to accept self-signed certificates for the auto-update mechanism, which might allow remote user-assisted attackers to use DNS spoofing to trick...

5 affected packages

firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-granparadiso
lightning-sunbird
midbrowser
mozilla-thunderbird
Show less packages

CVE-2006-4566

Medium priority

Some fixes available 9 of 10

Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allows remote attackers to cause a denial of service (crash) via a malformed JavaScript regular expression that ends with a backslash in an...

6 affected packages

firefox, firefox-3.0, lightning-sunbird, midbrowser, mozilla-thunderbird, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
lightning-sunbird
midbrowser
mozilla-thunderbird
xulrunner
Show less packages

CVE-2006-4565

Medium priority

Some fixes available 5 of 6

Heap-based buffer overflow in Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a JavaScript...

6 affected packages

firefox, firefox-granparadiso, midbrowser, lightning-sunbird, mozilla-thunderbird, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-granparadiso
midbrowser
lightning-sunbird
mozilla-thunderbird
xulrunner
Show less packages