RETIRED: Mozilla SeaMonkey 'marquee' Tag Remote Denial of Service Vulnerability
BID:31070
Info
RETIRED: Mozilla SeaMonkey 'marquee' Tag Remote Denial of Service Vulnerability
| Bugtraq ID: | 31070 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 08 2008 12:00AM |
| Updated: | Sep 09 2008 08:01PM |
| Credit: | Gjoko 'LiquidWorm' Krstic |
| Vulnerable: |
Mozilla SeaMonkey 1.1.11 |
| Not Vulnerable: | |
Discussion
RETIRED: Mozilla SeaMonkey 'marquee' Tag Remote Denial of Service Vulnerability
Mozilla SeaMonkey is prone to a remote denial-of-service vulnerability because it fails to correctly handle certain malicious web pages.
Attackers can exploit this issue to freeze the affected application, denying service to legitimate users.
Mozilla SeaMonkey 1.1.11 is vulnerable; other versions may also be affected.
UPDATE (September 9, 2008): This BID is retired because it is a duplicate of the issue described in BID 18165.
Mozilla SeaMonkey is prone to a remote denial-of-service vulnerability because it fails to correctly handle certain malicious web pages.
Attackers can exploit this issue to freeze the affected application, denying service to legitimate users.
Mozilla SeaMonkey 1.1.11 is vulnerable; other versions may also be affected.
UPDATE (September 9, 2008): This BID is retired because it is a duplicate of the issue described in BID 18165.
Exploit / POC
RETIRED: Mozilla SeaMonkey 'marquee' Tag Remote Denial of Service Vulnerability
The following exploit code is available:
The following exploit code is available:
Solution / Fix
RETIRED: Mozilla SeaMonkey 'marquee' Tag Remote Denial of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
RETIRED: Mozilla SeaMonkey 'marquee' Tag Remote Denial of Service Vulnerability
References:
References:
- SeaMonkey Homepage (Mozilla)