Oval Definition:oval:org.mitre.oval:def:100052
Revision Date:2007-05-09Version:5
Title:Mozilla Malicious news: Vulnerability
Description:Heap-based buffer overflow in MSG_UnEscapeSearchUrl in nsNNTPProtocol.cpp for Mozilla 1.7.3 and earlier allows remote attackers to cause a denial of service (application crash) via an NNTP URL (news:) with a trailing '\' (backslash) character, which prevents a string from being NULL terminated.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-1316
Platform(s):Microsoft Windows 2000
Microsoft Windows NT
Microsoft Windows Server 2003
Microsoft Windows XP
Product(s):mozilla
Mozilla Thunderbird
Definition Synopsis
  • Mozilla Thunderbird version 0.8 or earlier is installed
  • Mozilla Thunderbird version 0.8 or earlier is installed
  • AND Mozilla Thunderbird version 0.8 or earlier is installed
  • OR Mozilla Suite version 1.7.4 or earlier is installed
  • Mozilla Suite version 1.7.4 or earlier is installed
  • AND Mozilla Suite version 1.7.4 or earlier is installed
  • BACK