CVE-2006-0295
EPSS 70.7%
描述
Mozilla Firefox 1.5, Thunderbird 1.5 if Javascript is enabled in mail, and SeaMonkey before 1.0 might allow remote attackers to execute arbitrary code via the QueryInterface method of the built-in Location and Navigator objects, which leads to memory corruption.
如何修補 CVE-2006-0295
要修補 CVE-2006-0295,請將受影響套件升級到下列已修補版本。
- Debian/thunderbird—升級至 1.5.0.2-1 或更新版本
CVE-2006-0295 正在被利用嗎?
可能 — EPSS 為 70.7%,屬於高被利用機率區間,建議優先修補。
受影響套件(1)
- from 0, < 1.5.0.2-1