Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The format-number functionality in the XSLT implementation in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based buffer over-read.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla Firefox/Thunderbird/SeaMonkey 信息泄露洞
Vulnerability Description
Mozilla Mozilla Firefox是美国Mozilla基金会开发的一款开源Web浏览器。 Mozilla Firefox 15.0之前版本、Firefox ESR 10.0.7之前的10.x版本、Thunderbird 15.0之前版本、Thunderbird ESR 10.0.7之前的10.x版本、SeaMonkey 2.12之前版本中的XSL实现中的‘format-number’功能中存在漏洞。远程攻击者可利用该漏洞通过未明向量触发基于堆的缓冲区越界读取,进而获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A