CVE-2004-1639Firefox vulnerability

3 documents3 sources
Severity
5.0MEDIUMNVD
EPSS
0.9%
top 24.51%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 26
Latest updateApr 29

Description

Mozilla Firefox before 0.10, Mozilla 5.0, and Gecko 20040913 allows remote attackers to cause a denial of service (application crash or memory consumption) via a large binary file with a .html extension.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

1
GHSA
GHSA-9x27-fwpx-qjx8: Mozilla Firefox before 02022-04-29

📋Vendor Advisories

1
Debian
CVE-2004-1639: firefox - Mozilla Firefox before 0.10, Mozilla 5.0, and Gecko 20040913 allows remote attac...2004