search menu icon-carat-right cmu-wordmark

CERT Coordination Center

Mozilla CSS integer overflow vulnerability

Vulnerability Note VU#179014

Original Release Date: 2006-04-17 | Last Revised: 2006-05-17

Overview

Mozilla products contain an integer overflow that could allow a remote, unauthenticated attacker to execute arbitrary code.

Description

Cascading Style Sheets

CSS is a mechanism for adding style to web documents.

The problem

Mozilla products contain an integer overflow in the CSS letter spacing property. This may allow a remote attacker to manipulate memory allocation routines to create an undersized buffer. When data is copied to this buffer, a heap-based buffer overflow may occur.

For a list of affected, products refer to Mozilla Foundation Security Advisory 2006-22.

Impact

If an attacker can persuade a user to access a specially crafted web page, that attacker may be able to execute arbitrary code.

Solution

Upgrade
Refer to Mozilla Foundation Security Advisory 2006-22 for fixed versions of Mozilla products.

Vendor Information

179014
 

CVSS Metrics

Group Score Vector
Base
Temporal
Environmental

References

Acknowledgements

This vulnerability was reported in Mozilla Foundation Security Advisory 2006-22.

This document was written by Jeff Gennari.

Other Information

CVE IDs: CVE-2006-1730
Severity Metric: 31.40
Date Public: 2006-04-13
Date First Published: 2006-04-17
Date Last Updated: 2006-05-17 12:43 UTC
Document Revision: 21

Sponsored by CISA.