CVE-2004-1613
published 2004-10-18CVE-2004-1613: Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a (1)…
PriorityP413medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
1.65%
73.9th percentile
Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a (1) TEXTAREA, (2) INPUT, (3) FRAMESET or (4) IMG tag followed by a null character and some trailing characters, as demonstrated by mangleme.
Affected
28 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| mozilla | mozilla | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | fedora_core | — | — |
| redhat | fedora_core | — | — |
| redhat | linux | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
security flaw
vendor_redhat·2004-10-18·CVSS 5.0
CVE-2004-1613 [MEDIUM] security flaw
security flaw
Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a (1) TEXTAREA, (2) INPUT, (3) FRAMESET or (4) IMG tag followed by a null character and some trailing characters, as demonstrated by mangleme.
GHSA
GHSA-pqwg-424h-mwmq: Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a
ghsa_unreviewed·2022-04-29
CVE-2004-1613 [MEDIUM] GHSA-pqwg-424h-mwmq: Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a
Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a (1) TEXTAREA, (2) INPUT, (3) FRAMESET or (4) IMG tag followed by a null character and some trailing characters, as demonstrated by mangleme.
No detection rules found.
No public exploits indexed.
http://lcamtuf.coredump.cx/mangleme/gallery/http://lists.grok.org.uk/pipermail/full-disclosure/2004-October/027709.htmlhttp://marc.info/?l=bugtraq&m=109811406620511&w=2http://securitytracker.com/id?1011810http://www.redhat.com/support/errata/RHSA-2005-323.htmlhttp://www.securityfocus.com/bid/11439https://exchange.xforce.ibmcloud.com/vulnerabilities/17805https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10227http://lcamtuf.coredump.cx/mangleme/gallery/http://lists.grok.org.uk/pipermail/full-disclosure/2004-October/027709.htmlhttp://marc.info/?l=bugtraq&m=109811406620511&w=2http://securitytracker.com/id?1011810http://www.redhat.com/support/errata/RHSA-2005-323.htmlhttp://www.securityfocus.com/bid/11439https://exchange.xforce.ibmcloud.com/vulnerabilities/17805https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10227
2004-10-18
Published