10
CVSSv2

CVE-2004-0902

Published: 27/01/2005 Updated: 03/05/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple heap-based buffer overflows in Mozilla Firefox before the Preview Release, Mozilla prior to 1.7.3, and Thunderbird prior to 0.8 allow remote malicious users to cause a denial of service (application crash) or execute arbitrary code via (1) the "Send page" functionality, (2) certain responses from a malicious POP3 server, or (3) a link containing a non-ASCII hostname.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla thunderbird 0.7.2

mozilla thunderbird 0.7.3

conectiva linux 10.0

conectiva linux 9.0

mozilla thunderbird 0.7

mozilla thunderbird 0.7.1

mozilla mozilla 1.7

mozilla mozilla 1.7.1

mozilla mozilla 1.7.2

redhat enterprise linux 2.1

redhat linux 7.3

suse suse linux 8

suse suse linux 9.0

redhat enterprise linux 3.0

redhat linux 9.0

redhat linux advanced workstation 2.1

redhat enterprise linux desktop 3.0

redhat fedora core core_1.0

suse suse linux 8.1

suse suse linux 8.2

suse suse linux 1.0

suse suse linux 9.1

Vendor Advisories

Synopsis mozilla security update Type/Severity Security Advisory: Critical Topic Updated mozilla packages that fix a number of security issues are nowavailable Description Mozilla is an open source Web browser, advanced email and newsgroupclient, IRC chat client, and HTML editorJesse Rude ...