Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2005-0399
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-0399

Description:
Heap-based buffer overflow in GIF2.cpp in Firefox before 1.0.2, Mozilla before to 1.7.6, and Thunderbird before 1.0.2, and possibly other applications that use the same library, allows remote attackers to execute arbitrary code via a GIF image with a crafted Netscape extension 2 block and buffer size.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/19269

SUSE
  http://www.novell.com/linux/security/advisories/2006_04_25.html

SCO

SAID
  Secunia Advisory: SA14654
  Secunia Advisory: SA19823

REDHAT
  http://www.redhat.com/support/errata/RHSA-2005-336.html
  http://www.redhat.com/support/errata/RHSA-2005-337.html
  http://www.redhat.com/support/errata/RHSA-2005-323.html
  http://www.redhat.com/support/errata/RHSA-2005-335.html

OVAL
  http://oval.mitre.org/oval/definitions/data/oval100028.html

MISC

ISS
  http://xforce.iss.net/xforce/alerts/id/191

HP

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200503-30.xml

CONFIRM
  http://www.mozilla.org/security/announce/mfsa2005-30.html

CIAC
  http://www.ciac.org/ciac/bulletins/p-160.shtml

CERT-VN
  557948

BID
  15495
  12881


Return to the previous page.