CVE
- Id
- 11605
- CVE No.
- CVE-2005-0399
- Status
- Candidate
- Description
- Heap-based buffer overflow in GIF2.cpp in Firefox before 1.0.2, Mozilla before to 1.7.6, and Thunderbird before 1.0.2, and possibly other applications that use the same library, allows remote attackers to execute arbitrary code via a GIF image with a crafted Netscape extension 2 block and buffer size.
- Phase
- Assigned (20050214)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
82974 | 11605 | CVE-2005-0399 | ISS:20050323 Mozilla Foundation GIF Overflow | View |
82975 | 11605 | CVE-2005-0399 | URL:http://xforce.iss.net/xforce/alerts/id/191 | View |
82976 | 11605 | CVE-2005-0399 | CONFIRM:http://www.mozilla.org/security/announce/mfsa2005-30.html | View |
82977 | 11605 | CVE-2005-0399 | MISC:https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=150877 | View |
82978 | 11605 | CVE-2005-0399 | GENTOO:GLSA-200503-30 | View |
82979 | 11605 | CVE-2005-0399 | URL:http://www.gentoo.org/security/en/glsa/glsa-200503-30.xml | View |
82980 | 11605 | CVE-2005-0399 | HP:HPSBUX01133 | View |
82981 | 11605 | CVE-2005-0399 | HP:SSRT5940 | View |
82982 | 11605 | CVE-2005-0399 | REDHAT:RHSA-2005:323 | View |
82983 | 11605 | CVE-2005-0399 | URL:http://www.redhat.com/support/errata/RHSA-2005-323.html | View |
82984 | 11605 | CVE-2005-0399 | REDHAT:RHSA-2005:335 | View |
82985 | 11605 | CVE-2005-0399 | URL:http://www.redhat.com/support/errata/RHSA-2005-335.html | View |
82986 | 11605 | CVE-2005-0399 | REDHAT:RHSA-2005:336 | View |
82987 | 11605 | CVE-2005-0399 | URL:http://www.redhat.com/support/errata/RHSA-2005-336.html | View |
82988 | 11605 | CVE-2005-0399 | REDHAT:RHSA-2005:337 | View |
82989 | 11605 | CVE-2005-0399 | URL:http://www.redhat.com/support/errata/RHSA-2005-337.html | View |
82990 | 11605 | CVE-2005-0399 | SCO:SCOSA-2005.49 | View |
82991 | 11605 | CVE-2005-0399 | URL:ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.49/SCOSA-2005.49.txt | View |
82992 | 11605 | CVE-2005-0399 | SUSE:SUSE-SA:2006:022 | View |
82993 | 11605 | CVE-2005-0399 | URL:http://www.novell.com/linux/security/advisories/2006_04_25.html | View |
82994 | 11605 | CVE-2005-0399 | CERT-VN:VU#557948 | View |
82995 | 11605 | CVE-2005-0399 | URL:http://www.kb.cert.org/vuls/id/557948 | View |
82996 | 11605 | CVE-2005-0399 | CIAC:P-160 | View |
82997 | 11605 | CVE-2005-0399 | URL:http://www.ciac.org/ciac/bulletins/p-160.shtml | View |
82998 | 11605 | CVE-2005-0399 | BID:12881 | View |
82999 | 11605 | CVE-2005-0399 | URL:http://www.securityfocus.com/bid/12881 | View |
83000 | 11605 | CVE-2005-0399 | BID:15495 | View |
83001 | 11605 | CVE-2005-0399 | URL:http://www.securityfocus.com/bid/15495 | View |
83002 | 11605 | CVE-2005-0399 | OVAL:oval:org.mitre.oval:def:11377 | View |
83003 | 11605 | CVE-2005-0399 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11377 | View |
83004 | 11605 | CVE-2005-0399 | VUPEN:ADV-2005-0296 | View |
83005 | 11605 | CVE-2005-0399 | URL:http://www.vupen.com/english/advisories/2005/0296 | View |
83006 | 11605 | CVE-2005-0399 | OVAL:oval:org.mitre.oval:def:100028 | View |
83007 | 11605 | CVE-2005-0399 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:100028 | View |
83008 | 11605 | CVE-2005-0399 | SECUNIA:14654 | View |
83009 | 11605 | CVE-2005-0399 | URL:http://secunia.com/advisories/14654 | View |
83010 | 11605 | CVE-2005-0399 | SECUNIA:19823 | View |
83011 | 11605 | CVE-2005-0399 | URL:http://secunia.com/advisories/19823 | View |
83012 | 11605 | CVE-2005-0399 | XF:gif-extension-overflow(19269) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
61990 | JVNDB-2005-000192 | Mozilla 製品の XUL コンテンツの処理におけるセキュリティ制限を回避される脆弱性 | Mozilla Firefox には、XUL コンテンツの処理に不備が存在するため、意図的に作成されたスクロールバーなどのオブジェクトをドラッグした場合、XUL ファイルを開く際のセキュリティ制限を回避して、特権付き XUL ファイルを開くことが可能である脆弱性が存在します。 | CVE-2005-0401 | 11605 | 5.1 | http://jvndb.jvn.jp/ja/contents/2005/JVNDB-2005-000192.html | View |