MEDIUM
Mozilla Firefox 1.5.0.6 allows remote attackers to cause a denial of service (crash) via a crafted FTP response, when attempting to connect with a username and password via the FTP URI
Published Aug 23, 2006
4.3
MEDIUMCVSS 2.0
EPSS 6.15%
Description
Mozilla Firefox 1.5.0.6 allows remote attackers to cause a denial of service (crash) via a crafted FTP response, when attempting to connect with a username and password via the FTP URI.
Affected products
Remediation
Red Hat statement
Red Hat does not consider this flaw a security issue. This flaw is the result of a NULL pointer dereference, which is not exploitable and can only cause a client crash.
Weaknesses (1)
References (12)
- http://secunia.com/advisories/23197 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/23202 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/23235 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://securityreason.com/securityalert/1444 third-party-advisoryx_refsource_SREASON
- http://www.debian.org/security/2006/dsa-1224 vendor-advisoryx_refsource_DEBIAN
- http://www.debian.org/security/2006/dsa-1225 vendor-advisoryx_refsource_DEBIAN
- http://www.debian.org/security/2006/dsa-1227 vendor-advisoryx_refsource_DEBIAN
- http://www.securityfocus.com/archive/1/444064/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/19678 vdb-entryx_refsource_BID
- https://access.redhat.com/security/cve/CVE-2006-4310 Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2006-4310
- https://www.cve.org/CVERecord?id=CVE-2006-4310
| Link | Providers | Tags |
|---|---|---|
| http://secunia.com/advisories/23197 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://secunia.com/advisories/23202 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://secunia.com/advisories/23235 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://securityreason.com/securityalert/1444 | third-party-advisoryx_refsource_SREASON | |
| http://www.debian.org/security/2006/dsa-1224 | vendor-advisoryx_refsource_DEBIAN | |
| http://www.debian.org/security/2006/dsa-1225 | vendor-advisoryx_refsource_DEBIAN | |
| http://www.debian.org/security/2006/dsa-1227 | vendor-advisoryx_refsource_DEBIAN | |
| http://www.securityfocus.com/archive/1/444064/100/0/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.securityfocus.com/bid/19678 | vdb-entryx_refsource_BID | |
| https://access.redhat.com/security/cve/CVE-2006-4310 | Vendor Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2006-4310 | ||
| https://www.cve.org/CVERecord?id=CVE-2006-4310 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 23, 2006
Updated Aug 7, 2024
Reserved Aug 23, 2006
Link CVE-2006-4310
CISA Vulnrichment
Updated n/a