Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2006-6499 | First vendor Publication | 2006-12-19 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:N/I:N/A:P) | |||
---|---|---|---|
Cvss Base Score | 4.3 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
The js_dtoa function in Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 overwrites memory instead of exiting when the floating point precision is reduced, which allows remote attackers to cause a denial of service via any plugins that reduce the precision. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6499 |
CPE : Common Platform Enumeration
OpenVAS Exploits
Date | Description |
---|---|
2009-10-13 | Name : Solaris Update for Mozilla 1.7 119115-35 File : nvt/gb_solaris_119115_35.nasl |
2009-10-13 | Name : Solaris Update for Mozilla 1.7_x86 119116-35 File : nvt/gb_solaris_119116_35.nasl |
2009-03-23 | Name : Ubuntu Update for firefox vulnerabilities USN-398-1 File : nvt/gb_ubuntu_USN_398_1.nasl |
2009-03-23 | Name : Ubuntu Update for firefox vulnerabilities USN-398-2 File : nvt/gb_ubuntu_USN_398_2.nasl |
2009-03-23 | Name : Ubuntu Update for firefox-themes-ubuntu regression USN-398-3 File : nvt/gb_ubuntu_USN_398_3.nasl |
2009-03-23 | Name : Ubuntu Update for firefox regression USN-398-4 File : nvt/gb_ubuntu_USN_398_4.nasl |
2009-03-23 | Name : Ubuntu Update for mozilla-thunderbird vulnerabilities USN-400-1 File : nvt/gb_ubuntu_USN_400_1.nasl |
2009-01-28 | Name : SuSE Update for mozilla SUSE-SA:2007:006 File : nvt/gb_suse_2007_006.nasl |
2008-09-24 | Name : Gentoo Security Advisory GLSA 200701-02 (mozilla-firefox) File : nvt/glsa_200701_02.nasl |
2008-09-24 | Name : Gentoo Security Advisory GLSA 200701-04 (seamonkey) File : nvt/glsa_200701_04.nasl |
2008-01-17 | Name : Debian Security Advisory DSA 1253-1 (mozilla-firefox) File : nvt/deb_1253_1.nasl |
2008-01-17 | Name : Debian Security Advisory DSA 1258-1 (mozilla-firefox) File : nvt/deb_1258_1.nasl |
2008-01-17 | Name : Debian Security Advisory DSA 1265-1 (mozilla) File : nvt/deb_1265_1.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
31346 | Mozilla Multiple Products CPU FPP Reduction js_dtoa() Memory Corruption |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2013-03-09 | Name : The remote Ubuntu host is missing a security-related patch. File : ubuntu_USN-398-3.nasl - Type : ACT_GATHER_INFO |
2007-12-13 | Name : The remote SuSE 10 host is missing a security-related patch. File : suse_MozillaFirefox-2423.nasl - Type : ACT_GATHER_INFO |
2007-11-10 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-400-1.nasl - Type : ACT_GATHER_INFO |
2007-11-10 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-398-4.nasl - Type : ACT_GATHER_INFO |
2007-11-10 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-398-2.nasl - Type : ACT_GATHER_INFO |
2007-11-10 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-398-1.nasl - Type : ACT_GATHER_INFO |
2007-10-17 | Name : The remote openSUSE host is missing a security update. File : suse_seamonkey-2432.nasl - Type : ACT_GATHER_INFO |
2007-10-17 | Name : The remote openSUSE host is missing a security update. File : suse_MozillaThunderbird-2421.nasl - Type : ACT_GATHER_INFO |
2007-10-17 | Name : The remote openSUSE host is missing a security update. File : suse_MozillaFirefox-2418.nasl - Type : ACT_GATHER_INFO |
2007-03-12 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-1265.nasl - Type : ACT_GATHER_INFO |
2007-02-18 | Name : The remote host is missing Sun Security Patch number 120671-08 File : solaris8_120671.nasl - Type : ACT_GATHER_INFO |
2007-02-18 | Name : The remote host is missing Sun Security Patch number 120671-08 File : solaris9_120671.nasl - Type : ACT_GATHER_INFO |
2007-02-09 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-1258.nasl - Type : ACT_GATHER_INFO |
2007-02-09 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-1253.nasl - Type : ACT_GATHER_INFO |
2007-01-11 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-200701-04.nasl - Type : ACT_GATHER_INFO |
2007-01-08 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-200701-02.nasl - Type : ACT_GATHER_INFO |
2006-12-20 | Name : A web browser on the remote host is prone to multiple flaws. File : seamonkey_107.nasl - Type : ACT_GATHER_INFO |
2006-12-20 | Name : The remote Windows host contains a mail client that is affected by multiple v... File : mozilla_thunderbird_1509.nasl - Type : ACT_GATHER_INFO |
2006-12-20 | Name : The remote Windows host contains a web browser that is affected by multiple v... File : mozilla_firefox_1509.nasl - Type : ACT_GATHER_INFO |
2006-12-06 | Name : The remote host is missing Sun Security Patch number 120672-08 File : solaris9_x86_120672.nasl - Type : ACT_GATHER_INFO |
2006-12-06 | Name : The remote host is missing Sun Security Patch number 120672-08 File : solaris8_x86_120672.nasl - Type : ACT_GATHER_INFO |
2006-11-06 | Name : The remote host is missing Sun Security Patch number 119116-35 File : solaris10_x86_119116.nasl - Type : ACT_GATHER_INFO |
2006-11-06 | Name : The remote host is missing Sun Security Patch number 119115-36 File : solaris10_119115.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2025-02-07 01:06:09 |
|
2024-11-28 23:18:43 |
|
2024-11-28 12:10:48 |
|
2024-11-01 01:05:49 |
|
2024-10-22 12:05:54 |
|
2024-08-02 12:05:50 |
|
2024-08-02 01:02:07 |
|
2024-02-10 01:05:16 |
|
2024-02-02 01:05:29 |
|
2024-02-01 12:02:06 |
|
2023-12-22 21:31:47 |
|
2023-09-05 12:05:08 |
|
2023-09-05 01:01:57 |
|
2023-09-02 12:05:12 |
|
2023-09-02 01:01:58 |
|
2023-08-12 12:06:07 |
|
2023-08-12 01:01:58 |
|
2023-08-11 12:05:16 |
|
2023-08-11 01:02:01 |
|
2023-08-06 12:04:59 |
|
2023-08-06 01:01:59 |
|
2023-08-04 12:05:05 |
|
2023-08-04 01:02:02 |
|
2023-07-14 12:05:04 |
|
2023-07-14 01:02:00 |
|
2023-03-29 01:05:34 |
|
2023-03-28 12:02:05 |
|
2022-10-11 12:04:29 |
|
2022-10-11 01:01:50 |
|
2021-05-04 12:05:09 |
|
2021-04-22 01:05:42 |
|
2020-10-14 01:02:26 |
|
2020-10-03 01:02:24 |
|
2020-05-29 01:02:14 |
|
2020-05-24 01:03:08 |
|
2020-05-23 00:18:50 |
|
2019-10-10 05:19:24 |
|
2019-06-25 12:01:38 |
|
2019-01-30 12:02:02 |
|
2018-10-17 21:19:31 |
|
2018-07-13 01:02:14 |
|
2017-11-21 12:01:42 |
|
2016-04-26 15:25:22 |
|
2014-02-17 10:38:09 |
|
2013-05-11 11:16:52 |
|