CVE-2004-1613
5 documents5 sources
Severity
5.0MEDIUM
EPSS
1.4%
top 19.86%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 18
Latest updateApr 29
Description
Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a (1) TEXTAREA, (2) INPUT, (3) FRAMESET or (4) IMG tag followed by a null character and some trailing characters, as demonstrated by mangleme.
CVSS vector
AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9
Affected Packages6 packages
Also affects: Enterprise Linux 2.1, 3.0
Patches
🔴Vulnerability Details
2GHSA▶
GHSA-pqwg-424h-mwmq: Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a↗2022-04-29
CVEList▶
CVE-2004-1613: Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a↗2005-02-20