NASLDB: SeaMonkey < 1.1.8 Multiple Vulnerabilities
General
ID: 30210
Name: SeaMonkey < 1.1.8 Multiple Vulnerabilities
Summary: Checks version of SeaMonkey
Credits: Tenable Network Security, Inc.
Classification
Risk: –
CVSS: –
CVSS Base Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
CVSS Temporal Vector: CVSS2#E:F/RL:OF/RC:C
Port: –
Family: Windows
Type: Local
Description
The installed version of SeaMonkey is affected by various security
issues :
– Several stability bugs leading to crashes which, in
some cases, show traces of memory corruption
– Several file input focus stealing vulnerabilities
that could result in uploading of arbitrary files
provided their full path and file names are known.
– Several issues that allow scripts from page content
to escape from their sandboxed context and/or run
with chrome privileges, resulting in privilege
escalation, XSS, and/or remote code execution.
– A directory traversal vulnerability via the
‘chrome:’ URI.
– A vulnerability involving ‘designMode’ frames that
may result in web browsing history and forward
navigation stealing.
– An information disclosure issue in the BMP
decoder.
– Mis-handling of locally-saved plain text files.
– Possible disclosure of sensitive URL parameters,
such as session tokens, via the .href property of
stylesheet DOM nodes reflecting the final URI of
the stylesheet after following any 302 redirects.
– A heap buffer overflow that can be triggered
when viewing an email with an external MIME
body.
– Multiple cross-site scripting vulnerabilities
related to character encoding.
Exploiting
Exploit Available: True
Exploitability Ease: Exploits are available
Sources
CVE: CVE-2008-0304
OSVDB: –
Bugtraq: 27406
scipID: –
Timeline
Vulnerability Disclosure: –
Patch Release: –
Plugin Release: 2008/02/08
Plugin
Version: 1.14
Filename: seamonkey_118.nasl
Filesize: 4690 bytes
MD5 Hash: 4b65f4820d06f592825c2b85e0e008ab
Identification: SMB/transport
Require Keys: SeaMonkey/Version
Dependencies: "mozilla_org_installed.nasl"
Copyright: This script is Copyright© 2008-2011 Tenable Network Security, Inc.
- Latest Plugins
- USN-1611-1 : thunderbird vulnerabilities
- USN-1610-1 : linux vulnerability
- USN-1609-1 : linux-ti-omap4 vulnerability
- SuSE 10 Security Update : PostgreSQL
- RHSA-2012-1364: bind97
- RHSA-2012-1363: bind
- RHSA-2012-1362: thunderbird
- RHSA-2012-1361: xulrunner
- Mandriva Linux Security Advisory : graphicsmagick
- FreeBSD : phpMyAdmin — Multiple XSS due to unescaped HTML output in Trigger, Procedure and Event pages and Fetching the version information from a non-SSL site is vulnerable to a MITM attack













