Heap Memory Corruption in Netscape and Mozilla Browsers
CVE-2002-1091

Currently unrated

Key Information:

Vendor
Mozilla
Vendor
CVE Published:
4 October 2002

Summary

Netscape 6.2.3 and earlier, alongside Mozilla 1.0.1, suffer from a vulnerability that allows remote attackers to exploit a flaw in GIF image processing. Specifically, a GIF image crafted with a zero width can lead to heap memory corruption, potentially enabling attackers to execute arbitrary code on the affected systems. This vulnerability underscores the importance of safe image processing practices and validates the need for updated software versions.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.