Multiple Web Browser BMP Partial Palette Information Disclosure and Denial Of Service Vulnerability
BID:27826
Info
Multiple Web Browser BMP Partial Palette Information Disclosure and Denial Of Service Vulnerability
| Bugtraq ID: | 27826 |
| Class: | Design Error |
| CVE: |
CVE-2008-0420 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 16 2008 12:00AM |
| Updated: | May 07 2015 05:01PM |
| Credit: | Gynvael Coldwind, Hispasec and Team Vexillium is credited with the discovery of this vulnerability. |
| Vulnerable: |
Ubuntu Ubuntu Linux 7.10 sparc Ubuntu Ubuntu Linux 7.10 powerpc Ubuntu Ubuntu Linux 7.10 i386 Ubuntu Ubuntu Linux 7.10 amd64 Ubuntu Ubuntu Linux 7.04 sparc Ubuntu Ubuntu Linux 7.04 powerpc Ubuntu Ubuntu Linux 7.04 i386 Ubuntu Ubuntu Linux 7.04 amd64 Ubuntu Ubuntu Linux 6.10 sparc Ubuntu Ubuntu Linux 6.10 powerpc Ubuntu Ubuntu Linux 6.10 i386 Ubuntu Ubuntu Linux 6.10 amd64 Ubuntu Ubuntu Linux 6.06 LTS sparc Ubuntu Ubuntu Linux 6.06 LTS powerpc Ubuntu Ubuntu Linux 6.06 LTS i386 Ubuntu Ubuntu Linux 6.06 LTS amd64 Sun Solaris 10_x86 Sun Solaris 10_sparc RedHat Enterprise Linux WS 4 RedHat Enterprise Linux ES 4 RedHat Desktop 4.0 Red Hat Fedora 7 Red Hat Enterprise Linux Desktop 5 client Red Hat Enterprise Linux AS 4 Red Hat Enterprise Linux 5 Server Opera Software Opera Web Browser 9.50 beta Mozilla Thunderbird 2.0 .9 Mozilla Thunderbird 2.0 .8 Mozilla Thunderbird 2.0 .6 Mozilla Thunderbird 2.0 .5 Mozilla Thunderbird 2.0 .4 Mozilla Thunderbird 1.5 beta 2 Mozilla Thunderbird 1.5 .9 Mozilla Thunderbird 1.5 .13 Mozilla Thunderbird 1.5 Mozilla Thunderbird 1.5.0.8 Mozilla Thunderbird 1.5.0.7 Mozilla Thunderbird 1.5.0.5 Mozilla Thunderbird 1.5.0.4 Mozilla Thunderbird 1.5.0.2 Mozilla Thunderbird 1.5.0.14 Mozilla Thunderbird 1.5.0.12 Mozilla Thunderbird 1.5.0.10 Mozilla Thunderbird 1.5.0.1 Mozilla SeaMonkey 1.1.7 Mozilla SeaMonkey 1.1.6 Mozilla SeaMonkey 1.1.5 Mozilla SeaMonkey 1.1.4 Mozilla SeaMonkey 1.1.3 Mozilla SeaMonkey 1.1.2 Mozilla SeaMonkey 1.1.1 Mozilla SeaMonkey 1.0.99 Mozilla SeaMonkey 1.0.9 Mozilla SeaMonkey 1.0.8 Mozilla SeaMonkey 1.0.7 Mozilla SeaMonkey 1.0.6 Mozilla SeaMonkey 1.0.5 Mozilla SeaMonkey 1.0.3 Mozilla SeaMonkey 1.0.2 Mozilla SeaMonkey 1.0.1 Mozilla SeaMonkey 1.1 beta Mozilla SeaMonkey 1.0 dev Mozilla SeaMonkey 1.0 Mozilla Firefox 2.0 .9 Mozilla Firefox 2.0 .8 Mozilla Firefox 2.0 .7 Mozilla Firefox 2.0 .6 Mozilla Firefox 2.0 .5 Mozilla Firefox 2.0 .4 Mozilla Firefox 2.0 .3 Mozilla Firefox 2.0 .10 Mozilla Firefox 2.0 .1 Mozilla Firefox 2.0.0.2 Mozilla Firefox 2.0.0.11 Gentoo Linux |
| Not Vulnerable: |
Opera Software Opera Web Browser 9.25 Opera Software Opera Web Browser 9.24 Mozilla Thunderbird 2.0 .12 Mozilla SeaMonkey 1.1.8 Mozilla Firefox 2.0.0.12 |
Discussion
Multiple Web Browser BMP Partial Palette Information Disclosure and Denial Of Service Vulnerability
Firefox and Opera browsers are prone to a vulnerability that can result in information disclosure or a denial of service.
An attacker can exploit this issue to harvest sensitive information that may be used to launch further attacks or to crash the affected application, denying service to legitimate users.
Mozilla Firefox 2.0.0.11 and Opera 9.50 Beta are affected.
Firefox and Opera browsers are prone to a vulnerability that can result in information disclosure or a denial of service.
An attacker can exploit this issue to harvest sensitive information that may be used to launch further attacks or to crash the affected application, denying service to legitimate users.
Mozilla Firefox 2.0.0.11 and Opera 9.50 Beta are affected.
Exploit / POC
Multiple Web Browser BMP Partial Palette Information Disclosure and Denial Of Service Vulnerability
The researcher who reported this issue has developed a proof-of-concept exploit that has not been made publicly available.
The researcher who reported this issue has developed a proof-of-concept exploit that has not been made publicly available.
Solution / Fix
Multiple Web Browser BMP Partial Palette Information Disclosure and Denial Of Service Vulnerability
Solution:
This issue has been addressed in Firefox 2.0.0.12 and Opera 9.25.
Please see the referenced advisories for more information.
Mozilla Thunderbird 2.0 .4
Mozilla Thunderbird 2.0 .6
Mozilla Thunderbird 2.0 .9
Mozilla Thunderbird 2.0 .8
Mozilla Thunderbird 2.0 .5
Solution:
This issue has been addressed in Firefox 2.0.0.12 and Opera 9.25.
Please see the referenced advisories for more information.
Mozilla Thunderbird 2.0 .4
-
Mozilla thunderbird 2.0.0.12
http://www.mozilla.com/en-US/thunderbird/all.html
Mozilla Thunderbird 2.0 .6
-
Mozilla thunderbird 2.0.0.12
http://www.mozilla.com/en-US/thunderbird/all.html
Mozilla Thunderbird 2.0 .9
-
Mozilla thunderbird 2.0.0.12
http://www.mozilla.com/en-US/thunderbird/all.html
Mozilla Thunderbird 2.0 .8
-
Mozilla thunderbird 2.0.0.12
http://www.mozilla.com/en-US/thunderbird/all.html
Mozilla Thunderbird 2.0 .5
-
Mozilla thunderbird 2.0.0.12
http://www.mozilla.com/en-US/thunderbird/all.html
References
Multiple Web Browser BMP Partial Palette Information Disclosure and Denial Of Service Vulnerability
References:
References:
- Opera Homepage (Opera Software)
- Vendor Homepage (Mozilla Foundation)
- FireFox 2.0.0.11 and Opera 9.50 beta Remote Memory Information Leak, FireFox 2.0 ("Gynvael Coldwind"
) - MFSA 2008-07 Mozilla Foundation Security Advisory 2008-07 (http://www.mozilla.org/security/announce/2008/mfsa2008-07.html)
- RHSA-2008:0105-4 thunderbird security update (Red Hat)
- Solution 238492 : Multiple Security Vulnerabilities in Solaris 10 Firefox may (Sun)