CVE-2008-0304

Heap-based buffer overflow in Mozilla Thunderbird before 2.0.0.12 and SeaMonkey before 1.1.8 might allow remote attackers to execute arbitrary code via a crafted external-body MIME type in an e-mail message, related to an incorrect memory allocation during message preview.
Severity
UNKNOWN
AV:N/AC:L/Au:N/C:P/I:P/A:P
Atk. Vector
NETWORK
Atk. Complexity
LOW
Base Score
CVSS 3.x
EPSS Score
Percentile: 97%
VendorProductVersion
mozillaseamonkey
𝑥
≤ 1.1.7
mozillathunderbird
𝑥
≤ 2.0.0.9
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
icedove
gutsy
dne
feisty
dne
edgy
dne
dapper
dne
mozilla-thunderbird
gutsy
dne
feisty
Fixed 1.5.0.13+1.5.0.15~prepatch080227-0ubuntu0.7.04.0
released
edgy
Fixed 1.5.0.13+1.5.0.15~prepatch080227-0ubuntu0.6.10.0
released
dapper
Fixed 1.5.0.13+1.5.0.15~prepatch080227-0ubuntu0.6.06.0
released
thunderbird
gutsy
Fixed 2.0.0.12+nobinonly-0ubuntu0.7.10.0
released
feisty
dne
edgy
dne
dapper
dne
References