seamonkey
Page content
- Author: voroskoi
- Vulnerable: 1.0.5-1siwenna1
- Unaffected: 1.0.6-1siwenna1
Some vulnerabilities have been reported in Mozilla Firefox and Mozilla SeaMonkey, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, and potentially compromise a vulnerable system.
- The bundled Network Security Services (NSS) library contains an incomplete fix for the RSA signature verification vulnerability reported in MFSA 2006-60.
- An error exists within the handling of Script objects. This can potentially be exploited to execute arbitrary JavaScript bytecode by modifying already running Script objects.
- Some unspecified errors in the layout engine and memory corruption errors in the JavaScript engine can be exploited to crash the application and may allow execution of arbitrary code.
- An unspecified error within XML.prototype.hasOwnProperty can potentially be exploited to execute arbitrary code.
- Bug Tracker URL: http://bugs.frugalware.org/task/1436