Heap-Based Buffer Overflow in Mozilla Firefox and Thunderbird
CVE-2004-0902

Currently unrated

Key Information:

Vendor
Mozilla
Vendor
CVE Published:
27 January 2005

Summary

Multiple heap-based buffer overflow vulnerabilities exist in Mozilla Firefox and Thunderbird, allowing remote attackers to disrupt service or execute arbitrary code. These vulnerabilities can be exploited through the 'Send page' feature, by malicious responses from POP3 servers, or via links that contain non-ASCII hostnames. Users of affected versions should upgrade promptly to mitigate these risks.

References

EPSS Score

18% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.