FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2004-1316

This CVE name corresponds to:

Entered Topic
2005-01-13 mozilla -- heap overflow in NNTP handler

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2004-1316
Phase Assigned(20041230)

Description

Heap-based buffer overflow in MSG_UnEscapeSearchUrl in nsNNTPProtocol.cpp for Mozilla 1.7.3 and earlier allows remote attackers to cause a denial of service (application crash) via an NNTP URL (news:) with a trailing '\' (backslash) character, which prevents a string from being NULL terminated.

References

Source Reference
BUGTRAQ 20041229 Heap overflow in Mozilla Browser <= 1.7.3 NNTP code.
MISC http://isec.pl/vulnerabilities/isec-0020-mozilla.txt
CONFIRM http://www.mozilla.org/security/announce/mfsa2005-06.html
HP HPSBTU01114
HP HPSBUX01133
HP SSRT5940
REDHAT RHSA-2005:038
SUSE SUSE-SA:2006:022
SUSE SUSE-SA:2006:004
BID 12131
OVAL oval:org.mitre.oval:def:100052
OVAL oval:org.mitre.oval:def:9808
SECUNIA 19823
XF mozilla-nntp-bo(18711)