Mozilla Firefox SVG Scale Transform Integer Overflow

  Severity: MEDIUM
  CVE Identifier: CVE-2006-6497
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Multiple unspecified vulnerabilities in the layout engine for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allow remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown attack vectors.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1001083
  Trend Micro Deep Security DPI Rule Name: 1001083 - Mozilla Firefox SVG Scale Transform Integer Overflow

  AFFECTED SOFTWARE AND VERSION

  • Mozilla Firefox 1.5.0.8
  • Mozilla Firefox 2.0
  • Mozilla SeaMonkey 1.5.0.8
  • Mozilla Thunderbird 1.5.0.8

Featured Stories