{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"Mozilla Firefox version 1.5.0.4 ainsi que les versions ant\u00e9rieures ;","product":{"name":"Firefox","vendor":{"name":"Mozilla","scada":false}}},{"description":"Mozilla Thunderbird version 1.5.0.4 ainsi que les versions ant\u00e9rieures ;","product":{"name":"Thunderbird","vendor":{"name":"Mozilla","scada":false}}},{"description":"Mozilla SeaMonkey version 1.0.2 ainsi que les versions ant\u00e9rieures.","product":{"name":"N/A","vendor":{"name":"Mozilla","scada":false}}}],"affected_systems_content":null,"content":"## Description\n\nDe multiples vuln\u00e9rabilit\u00e9s pr\u00e9sentes dans Mozilla Firefox, Thunderbird\net SeaMonkey permettent \u00e0 un utilisateur malveillant de provoquer un\nd\u00e9ni de service, de r\u00e9aliser une attaque de type injection de code\nindirecte (aussi appel\u00e9 cross-Site Scripting) ou d'ex\u00e9cuter du code\narbitraire \u00e0 distance. Plusieurs de ces vuln\u00e9rabilit\u00e9s sont issues du\nmodule Javascript.\n\n## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[{"name":"CVE-2006-3801","url":"https://www.cve.org/CVERecord?id=CVE-2006-3801"},{"name":"CVE-2006-3804","url":"https://www.cve.org/CVERecord?id=CVE-2006-3804"},{"name":"CVE-2006-3806","url":"https://www.cve.org/CVERecord?id=CVE-2006-3806"},{"name":"CVE-2006-3677","url":"https://www.cve.org/CVERecord?id=CVE-2006-3677"},{"name":"CVE-2006-3809","url":"https://www.cve.org/CVERecord?id=CVE-2006-3809"},{"name":"CVE-2006-3811","url":"https://www.cve.org/CVERecord?id=CVE-2006-3811"},{"name":"CVE-2006-3810","url":"https://www.cve.org/CVERecord?id=CVE-2006-3810"},{"name":"CVE-2006-3808","url":"https://www.cve.org/CVERecord?id=CVE-2006-3808"},{"name":"CVE-2006-3802","url":"https://www.cve.org/CVERecord?id=CVE-2006-3802"},{"name":"CVE-2006-3113","url":"https://www.cve.org/CVERecord?id=CVE-2006-3113"},{"name":"CVE-2006-3812","url":"https://www.cve.org/CVERecord?id=CVE-2006-3812"},{"name":"CVE-2006-3805","url":"https://www.cve.org/CVERecord?id=CVE-2006-3805"},{"name":"CVE-2006-3807","url":"https://www.cve.org/CVERecord?id=CVE-2006-3807"},{"name":"CVE-2006-3803","url":"https://www.cve.org/CVERecord?id=CVE-2006-3803"}],"links":[{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3808 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3808"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-51 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-51.html"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3809 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3809"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-45 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-45.html"},{"title":"Bulletin de s\u00e9curit\u00e9 RedHat RHSA-2006:0610 du 28 juillet    2006 :","url":"http://rhn.redhat.com/errata/RHSA-2006-0610.html"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-55 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-55.html"},{"title":"Bulletin de s\u00e9curit\u00e9 RedHat RHSA-2006:0609 du 02 ao\u00fbt 2006    :","url":"http://rhn.redhat.com/errata/RHSA-2006-0609.html"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-52 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-52.html"},{"title":"Bulletin de s\u00e9curit\u00e9 Gentoo GLSA 200608-04 du 03 ao\u00fbt 2006    :","url":"http://www.gentoo.org/security/en/glsa/glsa-200608-04.xml"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-53 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-53.html"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-56 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-56.html"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3802 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3802"},{"title":"Bulletin de s\u00e9curit\u00e9 RedHat RHSA-2006:0611 du 28 juillet    2006 :","url":"http://rhn.redhat.com/errata/RHSA-2006-0611.html"},{"title":"Bulletin de s\u00e9curit\u00e9 Ubuntu USN-327-1 du 27 juillet 2006 :","url":"http://www.ubuntu.com/usn/usn-327-1"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3803 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3803"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3805 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3805"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-47 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-47.html"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-44 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-44.html"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-54 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-54.html"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3113 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3113"},{"title":"Bulletin de s\u00e9curit\u00e9 RedHat RHSA-2006:0608 du 27 juillet    2006 :","url":"http://rhn.redhat.com/errata/RHSA-2006-0608.html"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-49 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-49.html"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-50 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-50.html"},{"title":"Bulletin de s\u00e9curit\u00e9 de Mandriva Linux MDKSA-2006:143-1 du    17 ao\u00fbt 2006 :","url":"http://www.mandriva.com/security/advisories?name=MDKSA-2006:143-1"},{"title":"Bulletin de s\u00e9curit\u00e9 Ubuntu USN-329-1 du 28 juillet 2006 :","url":"http://www.ubuntu.com/usn/usn-329-1"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-48 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-48.html"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3677 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3677"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3804 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3804"},{"title":"Bulletin de s\u00e9curit\u00e9 SGI 20060703-01-P du 31 juillet 2006 :","url":"ftp://patches.sgi.com/support/free/security/advisories/20060703-01-U.asc"},{"title":"Bulletin de s\u00e9curit\u00e9 Gentoo GLSA 200608-03 du 03 ao\u00fbt 2006    :","url":"http://www.gentoo.org/security/en/glsa/glsa-200608-03.xml"},{"title":"Bulletin de s\u00e9curit\u00e9 Mozilla MFSA-2006-46 du 25 juillet    2006 :","url":"http://www.mozilla.org/security/announce/2006/mfsa2006-46.html"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3812 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3812"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3801 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3801"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3810 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3810"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3807 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3807"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3806 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3806"},{"title":"Bulletin de s\u00e9curit\u00e9 Gentoo GLSA 200608-02 du 03 ao\u00fbt 2006    :","url":"http://www.gentoo.org/security/en/glsa/glsa-200608-02.xml"},{"title":"R\u00e9f\u00e9rence CVE CVE-2006-3811 :","url":"http://cve.mitre.org/cgi-bin/cvs-name.cgi?name=CVE-2006-3811"}],"reference":"CERTA-2006-AVI-312","revisions":[{"description":"version initiale.","revision_date":"2006-07-27T00:00:00.000000"},{"description":"ajout des r\u00e9f\u00e9rences aux bulletins de s\u00e9curit\u00e9 Redhat, Ubuntu et SGI.","revision_date":"2006-08-02T00:00:00.000000"},{"description":"ajout des r\u00e9f\u00e9rences aux bulletins de s\u00e9curit\u00e9 Redhat et Gentoo.","revision_date":"2006-08-04T00:00:00.000000"},{"description":"ajout de la r\u00e9f\u00e9rence au bulletin de s\u00e9curit\u00e9 Mandriva Linux.","revision_date":"2006-08-21T00:00:00.000000"}],"risks":[{"description":"D\u00e9ni de service \u00e0 distance"},{"description":"Ex\u00e9cution de code arbitraire \u00e0 distance"},{"description":"Contournement de la politique de s\u00e9curit\u00e9"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 identifi\u00e9es dans les produits\nMozilla. Celles-ci permettraient \u00e0 un utilisateur malveillant d'ex\u00e9cuter\ndu code arbitraire \u00e0 distance.\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans les produits Mozilla","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Mozilla du 25 juillet 2006","url":null}]}
