Lucene search

K
ubuntucveUbuntu.comUB:CVE-2005-0592
HistoryMar 25, 2005 - 12:00 a.m.

CVE-2005-0592

2005-03-2500:00:00
ubuntu.com
ubuntu.com
12

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.021

Percentile

89.4%

Heap-based buffer overflow in the UTF8ToNewUnicode function for Firefox
before 1.0.1 and Mozilla before 1.7.6 might allow remote attackers to cause
a denial of service (crash) or execute arbitrary code via invalid sequences
in a UTF8 encoded string that result in a zero length value.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchmozilla< 1.7.12-1.1ubuntu2UNKNOWN
ubuntu6.10noarchmozilla< 1.7.12-1.1ubuntu2UNKNOWN

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.021

Percentile

89.4%