SkipNavigation
US-CERT
American Flag
  Vulnerability
Notes
Database

Search Vulnerability Notes

Vulnerability Notes Help Information


 
 View Notes By
  Name

ID Number

CVE Name

Date Public

Date Published

Date Updated

Severity Metric



 Other Documents
  Technical Alerts

Technical Bulletins

Alerts

Security Tips

 

Vulnerability Note VU#928956

Mozilla SVG memory corruption vulnerability

Overview

Mozilla products contain a memory corruption vulnerability related to SVG processing. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system.

I. Description

Scalable Vector Graphics (SVG) processing code in Mozilla Firefox and SeaMonkey contains a memory corruption vulnerability. According to Mozilla Foundation Security Advisory 2006-73:

    Appending an SVG comment DOM node from one document into another type of document such as HTML in some cases results in a crash due to memory corruption that can be exploited to run arbitrary code.

    This flaw was introduced in the Firefox 1.5.0.4 release, prior versions are unaffected.

II. Impact

By convincing a user to visit a specially crafted website, a remote, unauthenticated attacker may be able to execute arbitrary code.

III. Solution

Upgrade


Mozilla has addressed these vulnerabilities in Firefox 2.0.0.1, Firefox 1.5.0.9 and SeaMonkey 1.0.7.
Workaround

Disable JavaScript

For instructions on how to disable JavaScript in Firefox, please refer to the Firefox section of the Securing Your Web Browser document.

Systems Affected

VendorStatusDate Updated
MozillaVulnerable20-Dec-2006

References


http://www.mozilla.org/security/announce/2006/mfsa2006-73.html
http://www.zerodayinitiative.com/advisories/ZDI-06-051.html
https://bugzilla.mozilla.org/show_bug.cgi?id=360021
http://secunia.com/advisories/23420/
http://secunia.com/advisories/23591/
http://secunia.com/advisories/23598/
http://secunia.com/advisories/23439/
http://secunia.com/advisories/23514/
http://secunia.com/advisories/23545/
http://secunia.com/advisories/23601/
http://secunia.com/advisories/23614/
http://secunia.com/advisories/23618/
http://secunia.com/advisories/23692/
http://www.securityfocus.com/bid/21668

Credit

This vulnerability was reported by Mozilla who in turn credits TippingPoint and the Zero Day Initiative.

This document was written by Katie Steiner.

Other Information

Date Public12/19/2006
Date First Published12/20/2006 05:57:22 PM
Date Last Updated02/07/2007
CERT Advisory 
CVE NameCVE-2006-6504
US-CERT Technical Alerts 
Metric26.77
Document Revision29

If you have feedback, comments, or additional information about this vulnerability, please send us email.
 

 
Page Corner Image
Produced 2006 by US-CERT, a government organization
Disclaimers and copyright information
Get Adobe Reader Get Adobe Reader