CVE-2002-1091
Netscape 6.2.3 and earlier, and Mozilla 1.0.1, allow remote attackers to corrupt heap memory and execute arbitrary code via a GIF image with a zero width.
- Affected products
- Mozilla Firefox, Netscape, Nautilus, Nautilus-Devel, Nautilus-Mozilla
- Mozilla
- = 0.9.5, 0.9.6, 0.9.7, 0.9.8, 0.9.9, 1.0
- Netscape Navigator
- = 6.2, 6.2.1, 6.2.2, 6.2.3
- Opera Software Opera Web Browser
- = 5.12, 6.0, 6.0.1
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 4.3% (90th percentile)
- NVD status
- Modified
- Published
- 2004-09-01
CVE-2002-1091 at NVD
No indexed exploits for CVE-2002-1091 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2002-1091 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.