CVE-2006-4310
Summary
| CVE | CVE-2006-4310 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-08-23 19:04:00 UTC |
| Updated | 2018-10-17 21:34:00 UTC |
| Description | Mozilla Firefox 1.5.0.6 allows remote attackers to cause a denial of service (crash) via a crafted FTP response, when attempting to connect with a username and password via the FTP URI. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Application |
Mozilla |
Firefox |
1.5.0.6 |
All |
All |
All |
| Application |
Mozilla |
Firefox |
1.5.0.6 |
All |
All |
All |
References
| Reference | Source | Link | Tags |
|---|
| SecurityFocus |
BUGTRAQ |
www.securityfocus.com |
|
| Debian -- Security Information -- DSA-1224-1 mozilla |
DEBIAN |
www.debian.org |
|
| Debian update for mozilla - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| Debian update for mozilla-firefox - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| Debian update for mozilla-thunderbird - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| SecurityReason - (exploit) firefox 1.5.0.6 linux DoS |
SREASON |
securityreason.com |
|
| Debian -- Security Information -- DSA-1227-1 mozilla-thunderbird |
DEBIAN |
www.debian.org |
|
| Debian -- Security Information -- DSA-1225-2 mozilla-firefox |
DEBIAN |
www.debian.org |
|
| Mozilla Firefox FTP Denial of Service Vulnerability |
BID |
www.securityfocus.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
Vendor Comments And Credit
| Organization | Published | Contributor | Statement |
|---|
| Red Hat | 2006-09-21 | Joshua Bressers | Red Hat does not consider this flaw a security issue. This flaw is the result of a NULL pointer dereference, which is not exploitable and can only cause a client crash. |
There are currently no legacy QID mappings associated with this CVE.