Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2005-4720
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-4720

Description:
Mozilla Firefox 1.0.7 and earlier on Linux allows remote attackers to cause a denial of service (client crash) via an IFRAME element with a large value of the WIDTH attribute, which triggers a problem related to representation of floating-point numbers, leading to an infinite loop of widget resizes and a corresponding large number of function calls on the stack.

CVE Status:
Candidate

References:

ST
  1015011

SAID
  Secunia Advisory: SA17071

MISC
  http://www.security-protocols.com/advisory/sp-x19-advisory.txt
  http://security-protocols.com/modules.php?name=News&file=article&sid=2978

CONFIRM

BID
  15015


Return to the previous page.