CVE-2006-6497 Affecting firefox-esr package, versions <45.0esr-1


Severity

Recommended
0.0
medium
0
10

Based on Debian security rating.

Threat Intelligence

EPSS
79.91% (99th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-DEBIAN12-FIREFOXESR-1545814
  • published20 Dec 2006
  • disclosed20 Dec 2006

Introduced: 20 Dec 2006

CVE-2006-6497  (opens in a new tab)

How to fix?

Upgrade Debian:12 firefox-esr to version 45.0esr-1 or higher.

NVD Description

Note: Versions mentioned in the description apply only to the upstream firefox-esr package and not the firefox-esr package as distributed by Debian. See How to fix? for Debian:12 relevant fixed versions and status.

Multiple unspecified vulnerabilities in the layout engine for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allow remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown attack vectors.

References

CVSS Scores

version 3.1