CVE-2006-6505

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/12/2006
Last modified:
09/04/2025

Description

Multiple heap-based buffer overflows in Mozilla Thunderbird before 1.5.0.9 and SeaMonkey before 1.0.7 allow remote attackers to execute arbitrary code via (1) external message modies with long Content-Type headers or (2) long RFC2047-encoded (MIME non-ASCII) headers.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mozilla:seamonkey:*:*:*:*:*:*:*:* 1.0.6 (including)
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* 1.5.0.8 (including)


References to Advisories, Solutions, and Tools