Heap-Based Buffer Overflow in Mozilla Firefox and Thunderbird
CVE-2004-0902
Currently unrated
Summary
Multiple heap-based buffer overflow vulnerabilities exist in Mozilla Firefox and Thunderbird, allowing remote attackers to disrupt service or execute arbitrary code. These vulnerabilities can be exploited through the 'Send page' feature, by malicious responses from POP3 servers, or via links that contain non-ASCII hostnames. Users of affected versions should upgrade promptly to mitigate these risks.
References
EPSS Score
18% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved