CVE-2007-0776

NameCVE-2007-0776
DescriptionHeap-based buffer overflow in the _cairo_pen_init function in Mozilla Firefox 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1.0.8 allows remote attackers to execute arbitrary code via a large stroke-width attribute in the clipPath element in an SVG file.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub code/issues, web search, more)
NVD severityhigh (attack range: remote)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
icedove (PTS)jessie1:52.3.0-4~deb8u2fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
iceapesource(unstable)1.0.8-1high
icedovesource(unstable)1.5.0.10.dfsg1-1low
iceweaselsource(unstable)2.0.0.2+dfsg-1high
mozillasourcesarge(not affected)
mozilla-firefoxsourcesarge(not affected)
mozilla-thunderbirdsourcesarge(not affected)
xulrunnersource(unstable)1.8.0.10-1high

Notes

MFSA-2007-01
[sarge] - mozilla-firefox <not-affected> (Only affected Firefox 2.0 et al)
[sarge] - mozilla-thunderbird <not-affected> (Only affected Firefox 2.0 et al)
[sarge] - mozilla <not-affected> (Only affected Firefox 2.0 et al)

Search for package or bug name: Reporting problems