AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-6499

MEDIUM · CVSS 4.3 EPSS 3.84%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-12-20 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.3. It affects Firefox. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2006-6499
Severity
MEDIUM
CVSS
4.3
EPSS
3.84%
Firefox

Original NVD Description

The js_dtoa function in Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 overwrites memory instead of exiting when the floating point precision is reduced, which allows remote attackers to cause a denial of service via any plugins that reduce the precision.