SeaMonkey < 2.6.0 Multiple Vulnerabilities

High Nessus Plugin ID 57353


The remote Windows host contains a web browser that is affected by several vulnerabilities.


The installed version of SeaMonkey is earlier than 2.6.0. Such versions are potentially affected by the following security issues :

- An out-of-bounds memory access error exists in the 'SVG' implementation and can be triggered when 'SVG' elements are removed during a 'DOMAttrModified' event handler. (CVE-2011-3658)

- Various memory safety errors exist that can lead to memory corruption and possible code execution.

- An error exists in the 'YARR' regular expression library that can cause application crashes when handling certain JavaScript statements. (CVE-2011-3661)

- It is possible to detect keystrokes using 'SVG' animation 'accesskey' events even when JavaScript is disabled. (CVE-2011-3663)

- It is possible to crash the application when 'OGG' 'video' elements are scaled to extreme sizes.

- A use-after-free error exists related to the function 'nsHTMLSelectElement' that can allow arbitrary code execution during operations such as removal of a parent node of an element. (CVE-2011-3671)


Upgrade to SeaMonkey 2.6.0 or later.

See Also

Plugin Details

Severity: High

ID: 57353

File Name: seamonkey_26.nasl

Version: $Revision: 1.21 $

Type: local

Agent: windows

Family: Windows

Published: 2011/12/20

Modified: 2017/06/12

Dependencies: 20862

Risk Information

Risk Factor: High


Base Score: 9.3

Temporal Score: 7.7

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:F/RL:OF/RC:ND

Vulnerability Information

CPE: cpe:/a:mozilla:seamonkey

Required KB Items: SeaMonkey/Version

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2011/12/20

Vulnerability Publication Date: 2011/12/20

Exploitable With


Metasploit (Firefox nsSVGValue Out-of-Bounds Access Vulnerability)

Reference Information

CVE: CVE-2011-3658, CVE-2011-3660, CVE-2011-3661, CVE-2011-3663, CVE-2011-3665, CVE-2011-3671

BID: 51133, 51134, 51135, 51136, 51138, 54080

OSVDB: 77951, 77952, 77953, 77954, 77956, 83115

EDB-ID: 18847