Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 231616 (CVE-2007-6715)

Summary: www-client/mozilla-firefox(-bin) lol-firefox.gif crash (CVE-2007-6715)
Product: Gentoo Security Reporter: Matthias Geerdsen (RETIRED) <vorlon>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: normal CC: mozilla
Priority: High    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: https://bugzilla.mozilla.org/show_bug.cgi?id=424333
Whiteboard: B3 [noglsa]
Package list:
Runtime testing required: ---

Description Matthias Geerdsen (RETIRED) gentoo-dev 2008-07-12 18:46:37 UTC
CVE-2007-6715 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6715):
  Mozilla Firefox allows remote attackers to cause a denial of service (crash)
  via crafted image, as demonstrated by the zzuf lol-firefox.gif test case.
Comment 1 Matthias Geerdsen (RETIRED) gentoo-dev 2008-07-12 18:55:09 UTC
this appears still to be unfixed
Comment 2 Marijn Schouten (RETIRED) gentoo-dev 2008-07-12 18:57:26 UTC
*** Bug 231614 has been marked as a duplicate of this bug. ***
Comment 3 Hanno Böck gentoo-dev 2008-07-16 15:29:06 UTC
It is at least fixed in 3.0.
Comment 4 Nirbheek Chauhan (RETIRED) gentoo-dev 2009-07-07 15:54:15 UTC
So, what do we do here?
Comment 5 Robert Buchholz (RETIRED) gentoo-dev 2009-07-08 12:12:34 UTC
Thanks, fixed for long enough. Thanks!