CVE-2006-6504

N/A Unknown
Published: December 20, 2006 Modified: April 23, 2026
View on NVD

Description

Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to execute arbitrary code by appending an SVG comment DOM node to another type of document, which triggers memory corruption.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://fedoranews.org/cms/node/2297
Source: secalert@redhat.com
Broken Link
http://fedoranews.org/cms/node/2338
Source: secalert@redhat.com
Broken Link
http://rhn.redhat.com/errata/RHSA-2006-0758.html
Source: secalert@redhat.com
Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2006-0759.html
Source: secalert@redhat.com
Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2006-0760.html
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23282
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23422
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23433
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23439
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23440
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23468
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23514
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23545
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23589
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23601
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23614
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23618
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23672
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/23692
Source: secalert@redhat.com
Third Party Advisory
http://security.gentoo.org/glsa/glsa-200701-02.xml
Source: secalert@redhat.com
Third Party Advisory
http://securitytracker.com/id?1017417
Source: secalert@redhat.com
Third Party Advisory VDB Entry
http://securitytracker.com/id?1017418
Source: secalert@redhat.com
Third Party Advisory VDB Entry
http://www.gentoo.org/security/en/glsa/glsa-200701-04.xml
Source: secalert@redhat.com
Third Party Advisory
http://www.kb.cert.org/vuls/id/928956
Source: secalert@redhat.com
Third Party Advisory US Government Resource
http://www.mandriva.com/security/advisories?name=MDKSA-2007:010
Source: secalert@redhat.com
Third Party Advisory
http://www.mozilla.org/security/announce/2006/mfsa2006-73.html
Source: secalert@redhat.com
Vendor Advisory
http://www.securityfocus.com/bid/21668
Source: secalert@redhat.com
Third Party Advisory VDB Entry
http://www.ubuntu.com/usn/usn-398-1
Source: secalert@redhat.com
Third Party Advisory
http://www.ubuntu.com/usn/usn-398-2
Source: secalert@redhat.com
Third Party Advisory
http://www.us-cert.gov/cas/techalerts/TA06-354A.html
Source: secalert@redhat.com
Third Party Advisory US Government Resource
http://www.vupen.com/english/advisories/2006/5068
Source: secalert@redhat.com
Third Party Advisory
http://www.vupen.com/english/advisories/2008/0083
Source: secalert@redhat.com
Third Party Advisory
http://www.zerodayinitiative.com/advisories/ZDI-06-051.html
Source: secalert@redhat.com
Third Party Advisory VDB Entry
https://issues.rpath.com/browse/RPL-883
Source: secalert@redhat.com
Broken Link
ftp://patches.sgi.com/support/free/security/advisories/20061202-01-P.asc
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://fedoranews.org/cms/node/2297
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://fedoranews.org/cms/node/2338
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://rhn.redhat.com/errata/RHSA-2006-0758.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2006-0759.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://rhn.redhat.com/errata/RHSA-2006-0760.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23282
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23422
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23433
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23439
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23440
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23468
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23514
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23545
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23589
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23601
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23614
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23618
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23672
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/23692
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://security.gentoo.org/glsa/glsa-200701-02.xml
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://securitytracker.com/id?1017417
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
http://securitytracker.com/id?1017418
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
http://www.gentoo.org/security/en/glsa/glsa-200701-04.xml
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.kb.cert.org/vuls/id/928956
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory US Government Resource
http://www.mandriva.com/security/advisories?name=MDKSA-2007:010
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.mozilla.org/security/announce/2006/mfsa2006-73.html
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www.novell.com/linux/security/advisories/2006_80_mozilla.html
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://www.novell.com/linux/security/advisories/2007_06_mozilla.html
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://www.securityfocus.com/archive/1/454939/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/455145/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/455728/100/200/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/21668
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
http://www.ubuntu.com/usn/usn-398-1
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.ubuntu.com/usn/usn-398-2
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.us-cert.gov/cas/techalerts/TA06-354A.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory US Government Resource
http://www.vupen.com/english/advisories/2006/5068
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.vupen.com/english/advisories/2008/0083
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.zerodayinitiative.com/advisories/ZDI-06-051.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
https://issues.rpath.com/browse/RPL-883
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11077
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

84 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
41.6%
97th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

canonical mozilla