CVE-2004-1613
Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a (1) TEXTAREA, (2) INPUT, (3) FRAMESET or (4) IMG tag followed by a null character and some trailing characters, as demonstrated by mangleme.
- Affected products
- Mozilla Firefox, Red Hat
- Mozilla
- = 1.0, 1.0.1, 1.0.2, 1.1, 1.2, 1.2.1, 1.3, 1.3.1, 1.4, 1.4.1, 1.4.2, 1.4.4, 1.5, 1.6, 1.7, 1.7.1, 1.7.2, 1.7.3, 1.8
- Sgi Propack
- = 3.0
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 1.7% (74th percentile)
- NVD status
- Modified
- Published
- 2005-02-20
CVE-2004-1613 at NVD
No indexed exploits for CVE-2004-1613 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2004-1613 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.