CVE Vulnerabilities

CVE-2006-4566

Published: Sep 15, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allows remote attackers to cause a denial of service (crash) via a malformed JavaScript regular expression that ends with a backslash in an unterminated character set ([), which leads to a buffer over-read.

Affected Software

NameVendorStart VersionEnd Version
FirefoxMozilla*1.5.0.6 (including)
SeamonkeyMozilla*1.0.4 (including)
ThunderbirdMozilla*1.5.0.6 (including)
Red Hat Enterprise Linux 3RedHatseamonkey-0:1.0.5-0.1.el3*
Red Hat Enterprise Linux 4RedHatfirefox-0:1.5.0.7-0.1.el4*
Red Hat Enterprise Linux 4RedHatdevhelp-0:0.10-0.4.el4*
Red Hat Enterprise Linux 4RedHatseamonkey-0:1.0.5-0.1.el4*
Red Hat Enterprise Linux 4RedHatthunderbird-0:1.5.0.7-0.1.el4*
FirefoxUbuntudapper*
Firefox-3.0Ubuntudevel*
Firefox-3.0Ubuntugutsy*
Lightning-sunbirdUbuntudevel*
Lightning-sunbirdUbuntugutsy*
MidbrowserUbuntudevel*
MidbrowserUbuntugutsy*
Mozilla-thunderbirdUbuntudapper*
Mozilla-thunderbirdUbuntuedgy*
Mozilla-thunderbirdUbuntufeisty*
XulrunnerUbuntudevel*
XulrunnerUbuntuedgy*
XulrunnerUbuntufeisty*
XulrunnerUbuntugutsy*

References