CVE
- Id
- 14077
- CVE No.
- CVE-2005-2871
- Status
- Candidate
- Description
- Buffer overflow in the International Domain Name (IDN) support in Mozilla Firefox 1.0.6 and earlier, and Netscape 8.0.3.3 and 7.2, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a hostname with all "soft" hyphens (character 0xAD), which is not properly handled by the NormalizeIDN call in nsStandardURL::BuildNormalizedSpec.
- Phase
- Assigned (20050909)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
103888 | 14077 | CVE-2005-2871 | FULLDISC:20050909 Mozilla Firefox "Host:" Buffer Overflow | View |
103889 | 14077 | CVE-2005-2871 | URL:http://marc.info/?l=full-disclosure&m=112624614008387&w=2 | View |
103890 | 14077 | CVE-2005-2871 | MISC:http://www.security-protocols.com/firefox-death.html | View |
103891 | 14077 | CVE-2005-2871 | MISC:http://www.security-protocols.com/advisory/sp-x17-advisory.txt | View |
103892 | 14077 | CVE-2005-2871 | FULLDISC:20050911 FireFox "Host:" Buffer Overflow is not just exploitable on FireFox | View |
103893 | 14077 | CVE-2005-2871 | URL:http://archives.neohapsis.com/archives/fulldisclosure/2005-09/0316.html | View |
103894 | 14077 | CVE-2005-2871 | CONFIRM:http://www.mozilla.org/security/announce/mfsa2005-57.html | View |
103895 | 14077 | CVE-2005-2871 | CONFIRM:https://bugzilla.mozilla.org/show_bug.cgi?id=307259 | View |
103896 | 14077 | CVE-2005-2871 | DEBIAN:DSA-837 | View |
103897 | 14077 | CVE-2005-2871 | URL:http://www.debian.org/security/2005/dsa-837 | View |
103898 | 14077 | CVE-2005-2871 | DEBIAN:DSA-868 | View |
103899 | 14077 | CVE-2005-2871 | URL:http://www.debian.org/security/2005/dsa-868 | View |
103900 | 14077 | CVE-2005-2871 | DEBIAN:DSA-866 | View |
103901 | 14077 | CVE-2005-2871 | URL:http://www.debian.org/security/2005/dsa-866 | View |
103902 | 14077 | CVE-2005-2871 | FEDORA:FLSA-2006:168375 | View |
103903 | 14077 | CVE-2005-2871 | URL:http://www.redhat.com/archives/fedora-legacy-announce/2006-January/msg00004.html | View |
103904 | 14077 | CVE-2005-2871 | GENTOO:GLSA-200509-11 | View |
103905 | 14077 | CVE-2005-2871 | URL:http://www.gentoo.org/security/en/glsa/glsa-200509-11.xml | View |
103906 | 14077 | CVE-2005-2871 | HP:HPSBUX01133 | View |
103907 | 14077 | CVE-2005-2871 | HP:SSRT5940 | View |
103908 | 14077 | CVE-2005-2871 | MANDRIVA:MDKSA-2005:174 | View |
103909 | 14077 | CVE-2005-2871 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2005:174 | View |
103910 | 14077 | CVE-2005-2871 | REDHAT:RHSA-2005:768 | View |
103911 | 14077 | CVE-2005-2871 | URL:http://www.redhat.com/support/errata/RHSA-2005-768.html | View |
103912 | 14077 | CVE-2005-2871 | REDHAT:RHSA-2005:769 | View |
103913 | 14077 | CVE-2005-2871 | URL:http://www.redhat.com/support/errata/RHSA-2005-769.html | View |
103914 | 14077 | CVE-2005-2871 | REDHAT:RHSA-2005:791 | View |
103915 | 14077 | CVE-2005-2871 | URL:http://www.redhat.com/support/errata/RHSA-2005-791.html | View |
103916 | 14077 | CVE-2005-2871 | UBUNTU:USN-181-1 | View |
103917 | 14077 | CVE-2005-2871 | URL:http://www.ubuntu.com/usn/usn-181-1 | View |
103918 | 14077 | CVE-2005-2871 | CERT-VN:VU#573857 | View |
103919 | 14077 | CVE-2005-2871 | URL:http://www.kb.cert.org/vuls/id/573857 | View |
103920 | 14077 | CVE-2005-2871 | CIAC:P-303 | View |
103921 | 14077 | CVE-2005-2871 | URL:http://www.ciac.org/ciac/bulletins/p-303.shtml | View |
103922 | 14077 | CVE-2005-2871 | MISC:http://www.securiteam.com/securitynews/5RP0B0UGVW.html | View |
103923 | 14077 | CVE-2005-2871 | BID:14784 | View |
103924 | 14077 | CVE-2005-2871 | URL:http://www.securityfocus.com/bid/14784 | View |
103925 | 14077 | CVE-2005-2871 | OVAL:oval:org.mitre.oval:def:9608 | View |
103926 | 14077 | CVE-2005-2871 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9608 | View |
103927 | 14077 | CVE-2005-2871 | VUPEN:ADV-2005-1690 | View |
103928 | 14077 | CVE-2005-2871 | URL:http://www.vupen.com/english/advisories/2005/1690 | View |
103929 | 14077 | CVE-2005-2871 | VUPEN:ADV-2005-1691 | View |
103930 | 14077 | CVE-2005-2871 | URL:http://www.vupen.com/english/advisories/2005/1691 | View |
103931 | 14077 | CVE-2005-2871 | VUPEN:ADV-2005-1824 | View |
103932 | 14077 | CVE-2005-2871 | URL:http://www.vupen.com/english/advisories/2005/1824 | View |
103933 | 14077 | CVE-2005-2871 | OSVDB:19255 | View |
103934 | 14077 | CVE-2005-2871 | URL:http://www.osvdb.org/19255 | View |
103935 | 14077 | CVE-2005-2871 | OVAL:oval:org.mitre.oval:def:1287 | View |
103936 | 14077 | CVE-2005-2871 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1287 | View |
103937 | 14077 | CVE-2005-2871 | OVAL:oval:org.mitre.oval:def:584 | View |
103938 | 14077 | CVE-2005-2871 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:584 | View |
103939 | 14077 | CVE-2005-2871 | SECTRACK:1014877 | View |
103940 | 14077 | CVE-2005-2871 | URL:http://securitytracker.com/id?1014877 | View |
103941 | 14077 | CVE-2005-2871 | SECUNIA:16764 | View |
103942 | 14077 | CVE-2005-2871 | URL:http://secunia.com/advisories/16764 | View |
103943 | 14077 | CVE-2005-2871 | SECUNIA:16766 | View |
103944 | 14077 | CVE-2005-2871 | URL:http://secunia.com/advisories/16766 | View |
103945 | 14077 | CVE-2005-2871 | SECUNIA:16767 | View |
103946 | 14077 | CVE-2005-2871 | URL:http://secunia.com/advisories/16767 | View |
103947 | 14077 | CVE-2005-2871 | SECUNIA:17042 | View |
103948 | 14077 | CVE-2005-2871 | URL:http://secunia.com/advisories/17042 | View |
103949 | 14077 | CVE-2005-2871 | SECUNIA:17090 | View |
103950 | 14077 | CVE-2005-2871 | URL:http://secunia.com/advisories/17090 | View |
103951 | 14077 | CVE-2005-2871 | SECUNIA:17284 | View |
103952 | 14077 | CVE-2005-2871 | URL:http://secunia.com/advisories/17284 | View |
103953 | 14077 | CVE-2005-2871 | SECUNIA:17263 | View |
103954 | 14077 | CVE-2005-2871 | URL:http://secunia.com/advisories/17263 | View |
103955 | 14077 | CVE-2005-2871 | SREASON:83 | View |
103956 | 14077 | CVE-2005-2871 | URL:http://securityreason.com/securityalert/83 | View |
103957 | 14077 | CVE-2005-2871 | XF:mozilla-url-bo(22207) | View |