Heap-based buffer overflow in MSG_UnEscapeSearchUrl in nsNNTPProtocol.cpp for Mozilla 1.7.3 and earlier allows remote attackers to cause a denial of service (application crash) via an NNTP URL (news:) with a trailing '\' (backslash) character, which prevents a string from being NULL terminated.
CVSS Details
- CVSS 3.1 Base Score: 5.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade linux-mozilla-develUpgrade linux-mozillaUpgrade ja-netscape7Upgrade fr-linux-netscapeUpgrade de-netscape7Upgrade fr-netscape7Upgrade mozilla-embeddedUpgrade mozilla-gtk1Upgrade ja-linux-netscapeUpgrade pt_BR-netscape7Upgrade mozilla-gtk2Upgrade mozillaUpgrade mozilla+ipv6Upgrade netscape7Upgrade mozilla-gtkUpgrade de-linux-netscapeUpgrade linux-netscape | Dec 10, 2025 | Jan 13, 2005 |
| Mfsa2006 05 | — | Upgrade to Mozilla Firefox version 1.5.0.2Upgrade to the latest version of Mozilla Firefox | Jun 7, 2006 | Apr 14, 2006 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub