CVE-2008-5500

EUVD-2008-5477
The layout engine in Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allows remote attackers to cause a denial of service (crash) and possibly trigger memory corruption via vectors related to (1) a reachable assertion or (2) an integer overflow.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 90%
Affected Products (NVD)
VendorProductVersion
mozillafirefox
2.0 ≤
𝑥
< 2.0.0.19
mozillafirefox
3.0 ≤
𝑥
< 3.0.5
mozillaseamonkey
1.0 ≤
𝑥
< 1.1.14
mozillathunderbird
2.0 ≤
𝑥
< 2.0.0.19
canonicalubuntu_linux
6.06
canonicalubuntu_linux
7.10
canonicalubuntu_linux
8.04
canonicalubuntu_linux
8.10
debiandebian_linux
4.0
debiandebian_linux
5.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
firefox
dapper
Fixed 1.5.dfsg+1.5.0.15~prepatch080614i-0ubuntu1
released
gutsy
Fixed 2.0.0.19+nobinonly1-0ubuntu0.7.10.1
released
hardy
Fixed 2.0.0.19+nobinonly1-0ubuntu0.8.04.1
released
intrepid
dne
jaunty
dne
karmic
dne
lucid
Fixed 3.0.5+nobinonly-0ubuntu0.8.04.1
released
maverick
Fixed 3.0.5+nobinonly-0ubuntu0.8.04.1
released
natty
Fixed 3.0.5+nobinonly-0ubuntu0.8.04.1
released
firefox-3.0
dapper
dne
gutsy
ignored
hardy
Fixed 3.0.5+nobinonly-0ubuntu0.8.04.1
released
intrepid
Fixed 3.0.5+nobinonly-0ubuntu0.8.10.1
released
jaunty
Fixed 3.0.5+nobinonly-0ubuntu1
released
karmic
dne
lucid
dne
maverick
dne
natty
dne
iceape
dapper
dne
gutsy
ignored
hardy
dne
intrepid
dne
jaunty
dne
karmic
dne
lucid
dne
maverick
dne
natty
dne
mozilla-thunderbird
dapper
Fixed 1.5.0.13+1.5.0.15~prepatch080614i-0ubuntu0.6.06.1
released
gutsy
dne
hardy
dne
intrepid
dne
jaunty
dne
karmic
dne
lucid
dne
maverick
dne
natty
dne
seamonkey
dapper
dne
gutsy
dne
hardy
Fixed 1.1.15+nobinonly-0ubuntu0.8.04.2
released
intrepid
Fixed 1.1.15+nobinonly-0ubuntu0.8.10.2
released
jaunty
Fixed 1.1.15+nobinonly-0ubuntu2
released
karmic
Fixed 1.1.15+nobinonly-0ubuntu2
released
lucid
Fixed 1.1.15+nobinonly-0ubuntu2
released
maverick
Fixed 1.1.15+nobinonly-0ubuntu2
released
natty
Fixed 1.1.15+nobinonly-0ubuntu2
released
thunderbird
dapper
dne
gutsy
Fixed 2.0.0.19+nobinonly-0ubuntu0.7.10.1
released
hardy
Fixed 2.0.0.19+nobinonly-0ubuntu0.8.04.1
released
intrepid
Fixed 2.0.0.19+nobinonly-0ubuntu0.8.10.1
released
jaunty
Fixed 2.0.0.19+nobinonly-0ubuntu1
released
karmic
Fixed 2.0.0.19+nobinonly-0ubuntu1
released
lucid
Fixed 2.0.0.19+nobinonly-0ubuntu1
released
maverick
Fixed 2.0.0.19+nobinonly-0ubuntu1
released
natty
Fixed 2.0.0.19+nobinonly-0ubuntu1
released
xulrunner
dapper
dne
gutsy
Fixed 1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.7.10.1
released
hardy
Fixed 1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.8.04.1
released
intrepid
Fixed 1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.8.10.1
released
jaunty
ignored
karmic
ignored
lucid
dne
maverick
dne
natty
dne
xulrunner-1.9
dapper
dne
gutsy
ignored
hardy
Fixed 1.9.0.5+nobinonly-0ubuntu0.8.04.1
released
intrepid
Fixed 1.9.0.5+nobinonly-0ubuntu0.8.10.1
released
jaunty
Fixed 1.9.0.5+nobinonly-0ubuntu1
released
karmic
dne
lucid
dne
maverick
dne
natty
dne
Common Weakness Enumeration
References