5
CVSSv2

CVE-2004-1316

Published: 29/12/2004 Updated: 03/05/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Heap-based buffer overflow in MSG_UnEscapeSearchUrl in nsNNTPProtocol.cpp for Mozilla 1.7.3 and previous versions allows remote malicious users to cause a denial of service (application crash) via an NNTP URL (news:) with a trailing '\' (backslash) character, which prevents a string from being NULL terminated.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla mozilla 1.5.1

mozilla mozilla 1.5

mozilla mozilla 1.4

mozilla mozilla 1.4.1

mozilla mozilla 1.6

mozilla mozilla 1.7

mozilla mozilla

mozilla mozilla 1.3

mozilla mozilla 1.7.2

mozilla mozilla 1.7.3

mozilla mozilla 1.7.1

Vendor Advisories

Synopsis mozilla security update Type/Severity Security Advisory: Low Topic Updated mozilla packages that fix a buffer overflow issue are now available Description Mozilla is an open source Web browser, advanced email and newsgroup client,IRC chat client, and HTML editoriSEC Security Rese ...