Description Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to execute arbitrary code via "an invalid and non-sensical ordering of table-related tags" that results in a negative array index.
CVSS vector AV:N/AC:M/C:C/I:C/A:C Exploitability: 8.6 | Impact: 10.0 Affected Packages6 packages Show 1 more packages
🔴 Vulnerability Details2 GHSA GHSA-hhhq-8f65-6q7x: Mozilla Firefox and Thunderbird 1 ↗ 2022-05-03 ▶ OSV CVE-2006-0748: Mozilla Firefox and Thunderbird 1 ↗ 2006-04-14 ▶
📋 Vendor Advisories4 Ubuntu Thunderbird vulnerabilities ↗ 2006-05-03 ▶ Ubuntu Mozilla vulnerabilities ↗ 2006-04-28 ▶ Debian CVE-2006-0748: firefox - Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozil... ↗ 2006 ▶
💬 Community7 Bugzilla CVE-2006-0748 security flaw ↗ 2018-08-16 ▶ Bugzilla CVE-2006-0748 Table Rebuilding Code Execution Vulnerability ↗ 2006-04-13 ▶ Bugzilla CVE-2006-0748 Table Rebuilding Code Execution Vulnerability ↗ 2006-04-13 ▶ Bugzilla CVE-2006-0748 Table Rebuilding Code Execution Vulnerability ↗ 2006-04-13 ▶ Bugzilla CVE-2006-0748 Table Rebuilding Code Execution Vulnerability ↗ 2006-04-13 ▶ Show 2 more