Lucene search

K
cve[email protected]CVE-2004-1613
HistoryFeb 20, 2005 - 5:00 a.m.

CVE-2004-1613

2005-02-2005:00:00
web.nvd.nist.gov
32
mozilla
remote code execution
null character
denial of service
cve-2004-1613
nvd

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

6.7 Medium

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.2%

Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a (1) TEXTAREA, (2) INPUT, (3) FRAMESET or (4) IMG tag followed by a null character and some trailing characters, as demonstrated by mangleme.

Affected configurations

NVD
Node
mozillamozillaMatch1.0
OR
mozillamozillaMatch1.0rc1
OR
mozillamozillaMatch1.0rc2
OR
mozillamozillaMatch1.0.1
OR
mozillamozillaMatch1.0.2
OR
mozillamozillaMatch1.1
OR
mozillamozillaMatch1.1alpha
OR
mozillamozillaMatch1.1beta
OR
mozillamozillaMatch1.2
OR
mozillamozillaMatch1.2alpha
OR
mozillamozillaMatch1.2beta
OR
mozillamozillaMatch1.2.1
OR
mozillamozillaMatch1.3
OR
mozillamozillaMatch1.3.1
OR
mozillamozillaMatch1.4
OR
mozillamozillaMatch1.4alpha
OR
mozillamozillaMatch1.4beta
OR
mozillamozillaMatch1.4.1
OR
mozillamozillaMatch1.4.2
OR
mozillamozillaMatch1.4.4
OR
mozillamozillaMatch1.5
OR
mozillamozillaMatch1.6
OR
mozillamozillaMatch1.7
OR
mozillamozillaMatch1.7rc3
OR
mozillamozillaMatch1.7.1
OR
mozillamozillaMatch1.7.2
OR
mozillamozillaMatch1.7.3
OR
mozillamozillaMatch1.8alpha2
OR
sgipropackMatch3.0
Node
redhatenterprise_linuxMatch2.1advanced_server
OR
redhatenterprise_linuxMatch2.1enterprise_server
OR
redhatenterprise_linuxMatch2.1workstation
OR
redhatenterprise_linuxMatch3.0advanced_servers
OR
redhatenterprise_linuxMatch3.0enterprise_server
OR
redhatenterprise_linuxMatch3.0workstation
OR
redhatenterprise_linux_desktopMatch3.0
OR
redhatfedora_coreMatchcore_1.0
OR
redhatfedora_coreMatchcore_2.0
OR
redhatlinuxMatch7.3
OR
redhatlinuxMatch7.3i386
OR
redhatlinuxMatch7.3i686
OR
redhatlinuxMatch9.0i386
OR
redhatlinux_advanced_workstationMatch2.1itanium

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

6.7 Medium

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.2%

Related for CVE-2004-1613