Vulnérabilité · NVD
CVE-2006-2778
N/A
EN The crypto.signText function in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to execute arbitrary code via certain optional Certificate Authority name arguments, which causes an invalid array index and triggers a buffer overflow.
EPSS
4.91%
au-dessus de la médiane
percentile 91.3%
Apps suivies liées à cette CVE
Pour chaque app : la plage affectée, la version qui corrige, et où en est l'app suivie aujourd'hui.
Configurations CPE vulnérables (1)
| Vendor | Produit | Plateforme | Versions | CPE 2.3 URI |
|---|---|---|---|---|
| mozilla |
thunderbird Toutes plateformes (wildcard)
|
Toutes plateformes (wildcard) | ≤1.5.0.3 | cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* |