CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2008-5018

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0120%
EPSS Percentile29.93th
Published2008年11月13日
Last Modified2026年4月23日

Vulnerability Description

The JavaScript engine in Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remote attackers to cause a denial of service (crash) via vectors related to "insufficient class checking" in the Date class.

Affected Platforms (CPE)

📦
Mozilla

Firefox

>= 2.0 and < 2.0.0.18
📦
Mozilla

Firefox

>= 3.0 and < 3.0.4
📦
Mozilla

Seamonkey

>= 1.0 and < 1.1.13
📦
Mozilla

Thunderbird

>= 2.0 and < 2.0.0.18
💻
Debian

Debian Linux

= 4.0
💻
Canonical

Ubuntu Linux

= 6.06
💻
Canonical

Ubuntu Linux

= 7.10
💻
Canonical

Ubuntu Linux

= 8.04
💻
Canonical

Ubuntu Linux

= 8.10

References & Advisories

相關漏洞威脅