漏洞信息详情
Mozilla Firefox 特制的FTP响应拒绝服务漏洞
漏洞简介
Mozilla Firefox 1.5.0.6版本中,远程攻击者在试图以一个用户名和密码通过FTP URI连接时,可借助一个特制的FTP响应触发拒绝服务攻击(崩溃)。
漏洞公告
目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge12_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge12_mipsel.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_alpha.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_amd64.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_arm.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_hppa.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_i386.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_ia64.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_m68k.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_mips.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_mipsel.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_powerpc.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_s390.deb
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge13_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge13_sparc.deb
Debian mozilla-firefox-gnome-support_1.0.4-2sarge12_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge12_mipsel.deb
Debian mozilla-firefox-gnome-support_1.0.4-2sarge13_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge13_alpha.deb
Debian mozilla-firefox-gnome-support_1.0.4-2sarge13_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge13_amd64.deb
Debian mozilla-firefox-gnome-support_1.0.4-2sarge13_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge13_arm.deb
Debian mozilla-firefox-gnome-support_1.0.4-2sarge13_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge13_hppa.deb
Debian mozilla-firefox-gnome-support_1.0.4-2sarge13_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/update
参考网址
来源: BID
名称: 19678
链接:http://www.securityfocus.com/bid/19678
来源: BUGTRAQ
名称: 20060822 (exploit) firefox 1.5.0.6 linux DoS
链接:http://www.securityfocus.com/archive/1/archive/1/444064/100/0/threaded
来源: DEBIAN
名称: DSA-1227
链接:http://www.debian.org/security/2006/dsa-1227
来源: DEBIAN
名称: DSA-1225
链接:http://www.debian.org/security/2006/dsa-1225
来源: DEBIAN
名称: DSA-1224
链接:http://www.debian.org/security/2006/dsa-1224
来源: SREASON
名称: 1444
链接:http://securityreason.com/securityalert/1444
来源: SECUNIA
名称: 23235
链接:http://secunia.com/advisories/23235
来源: SECUNIA
名称: 23202
链接:http://secunia.com/advisories/23202
来源: SECUNIA
名称: 23197
链接:http://secunia.com/advisories/23197
受影响实体
- Mozilla Firefox:1.5.0.6<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...