DescriptionThe crypto.signText function in Mozilla Firefox and Thunderbird before 220.127.116.11 allows remote attackers to execute arbitrary code via certain optional Certificate Authority name arguments, which causes an invalid array index and triggers a buffer overflow.
Overall state of this security issue: Resolved
This issue is currently rated as having moderate severity.
|National Vulnerability Database|
- SUSE-SA:2006:035, published Fri, 23 Jun 2006 10:00:00 +0000