Mozilla Firefox Buffer Overflow in Processing IFRAME Widths May Let Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1015011
|
|
SecurityTracker URL: http://securitytracker.com/id?1015011
|
|
CVE Reference: CVE-2005-4720
(Links to External Site)
|
Updated: Jun 14 2008
|
Original Entry Date: Oct 6 2005
|
Impact: Denial of service via network, Execution of arbitrary code via network, User access via network
|
Exploit Included: Yes
|
Version(s): 1.0.7 and prior versions
|
Description: A vulnerability was reported in Mozilla Firefox. A remote user may be able to cause arbitrary code to be executed on the target user's system.
A remote user can create HTML code containing an IFRAME that has the width set to '33333333' to trigger a stack overflow and cause
the target user's browser to crash or potentially execute arbitrary code.
A demonstration exploit is provided:
IFRAME WIDTH=33333333
Tom Ferris discovered this vulnerability.
The original advisory is available at:
http://www.security-protocols.com/advisory/sp-x19-advisory.txt
|
Impact: A remote user can cause the target user's browser to crash or potentially execute arbitrary code.
|
Solution: No solution was available at the time of this entry.
|
Vendor URL: www.mozilla.org/products/firefox/ (Links to External Site)
|
Cause: Boundary error
|
Underlying OS: Linux (Any)
|
Underlying OS Comments: Linux version is affected.
|
|
Message History:
None.
|
Source Message Contents
|
Date: Thu, 6 Oct 2005 08:11:36 -0400
Subject: Mozilla Firefox 1.0.7 IFRAME Float Stack Overflow
|
http://www.security-protocols.com/advisory/sp-x19-advisory.txt
|
|