CVE-2007-1282

Integer overflow in Mozilla Thunderbird before 1.5.0.10 and SeaMonkey before 1.0.8 allows remote attackers to trigger a buffer overflow and possibly execute arbitrary code via a text/enhanced or text/richtext e-mail message with an extremely long line.
References
Link Resource
ftp://patches.sgi.com/support/free/security/advisories/20070202-01-P.asc
http://fedoranews.org/cms/node/2747
http://fedoranews.org/cms/node/2749
http://osvdb.org/33810
http://secunia.com/advisories/24406
http://secunia.com/advisories/24456
http://secunia.com/advisories/24457
http://secunia.com/advisories/24522
http://secunia.com/advisories/25588
http://security.gentoo.org/glsa/glsa-200703-18.xml
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.338131
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.363947
http://www.debian.org/security/2007/dsa-1336
http://www.mozilla.org/security/announce/2007/mfsa2007-10.html Patch
http://www.redhat.com/support/errata/RHSA-2007-0078.html Patch
http://www.redhat.com/support/errata/RHSA-2007-0108.html
http://www.securityfocus.com/bid/22845
http://www.vupen.com/english/advisories/2007/0824
https://bugzilla.mozilla.org/show_bug.cgi?id=362735
https://exchange.xforce.ibmcloud.com/vulnerabilities/32810
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11313
ftp://patches.sgi.com/support/free/security/advisories/20070202-01-P.asc
http://fedoranews.org/cms/node/2747
http://fedoranews.org/cms/node/2749
http://osvdb.org/33810
http://secunia.com/advisories/24406
http://secunia.com/advisories/24456
http://secunia.com/advisories/24457
http://secunia.com/advisories/24522
http://secunia.com/advisories/25588
http://security.gentoo.org/glsa/glsa-200703-18.xml
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.338131
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.363947
http://www.debian.org/security/2007/dsa-1336
http://www.mozilla.org/security/announce/2007/mfsa2007-10.html Patch
http://www.redhat.com/support/errata/RHSA-2007-0078.html Patch
http://www.redhat.com/support/errata/RHSA-2007-0108.html
http://www.securityfocus.com/bid/22845
http://www.vupen.com/english/advisories/2007/0824
https://bugzilla.mozilla.org/show_bug.cgi?id=362735
https://exchange.xforce.ibmcloud.com/vulnerabilities/32810
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11313
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:redhat:enterprise_linux:4.0:*:advanced_server:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:4.0:*:enterprise_server:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:4.0:*:workstation:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:4.0:*:*:*:*:*:*:*
OR cpe:2.3:a:mozilla:seamonkey:1.0:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:seamonkey:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:seamonkey:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:seamonkey:1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:seamonkey:1.0.4:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:seamonkey:1.0.5:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:seamonkey:1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:seamonkey:1.0.7:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.2:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.3:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.4:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.5:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.6:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.7:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.7.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.7.2:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.7.3:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.8:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:0.9:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.0:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.0.4:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.0.5:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.0.7:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.0.8:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.5:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.5.0.3:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.5.0.4:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.5.0.6:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.5.0.7:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.5.0.8:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:1.5.0.9:*:*:*:*:*:*:*

History

21 Nov 2024, 00:27

Type Values Removed Values Added
References () ftp://patches.sgi.com/support/free/security/advisories/20070202-01-P.asc - () ftp://patches.sgi.com/support/free/security/advisories/20070202-01-P.asc -
References () http://fedoranews.org/cms/node/2747 - () http://fedoranews.org/cms/node/2747 -
References () http://fedoranews.org/cms/node/2749 - () http://fedoranews.org/cms/node/2749 -
References () http://osvdb.org/33810 - () http://osvdb.org/33810 -
References () http://secunia.com/advisories/24406 - () http://secunia.com/advisories/24406 -
References () http://secunia.com/advisories/24456 - () http://secunia.com/advisories/24456 -
References () http://secunia.com/advisories/24457 - () http://secunia.com/advisories/24457 -
References () http://secunia.com/advisories/24522 - () http://secunia.com/advisories/24522 -
References () http://secunia.com/advisories/25588 - () http://secunia.com/advisories/25588 -
References () http://security.gentoo.org/glsa/glsa-200703-18.xml - () http://security.gentoo.org/glsa/glsa-200703-18.xml -
References () http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.338131 - () http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.338131 -
References () http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.363947 - () http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.363947 -
References () http://www.debian.org/security/2007/dsa-1336 - () http://www.debian.org/security/2007/dsa-1336 -
References () http://www.mozilla.org/security/announce/2007/mfsa2007-10.html - Patch () http://www.mozilla.org/security/announce/2007/mfsa2007-10.html - Patch
References () http://www.redhat.com/support/errata/RHSA-2007-0078.html - Patch () http://www.redhat.com/support/errata/RHSA-2007-0078.html - Patch
References () http://www.redhat.com/support/errata/RHSA-2007-0108.html - () http://www.redhat.com/support/errata/RHSA-2007-0108.html -
References () http://www.securityfocus.com/bid/22845 - () http://www.securityfocus.com/bid/22845 -
References () http://www.vupen.com/english/advisories/2007/0824 - () http://www.vupen.com/english/advisories/2007/0824 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=362735 - () https://bugzilla.mozilla.org/show_bug.cgi?id=362735 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/32810 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/32810 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11313 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11313 -

Information

Published : 2007-03-06 02:19

Updated : 2024-11-21 00:27


NVD link : CVE-2007-1282

Mitre link : CVE-2007-1282

CVE.ORG link : CVE-2007-1282


JSON object : View

Products Affected

mozilla

  • thunderbird
  • seamonkey

redhat

  • enterprise_linux
  • enterprise_linux_desktop