CVE-1999-0892: Buffer Overflow
Published Dec 24, 1999
·Updated
Buffer overflow in Netscape Communicator before 4.7 via a dynamic font whose length field is less than the size of the font.
Affected Software
1 affected component
Netscape Communicator=4.5
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Netscape Communicatorto a version that resolves this vulnerability.Fixed in 4.7
Event History
Dec 24, 1999
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Jan 4, 2000
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-1999-0892?
CVE-1999-0892 is classified as a high-severity vulnerability due to its potential for causing a buffer overflow.
2
How do I fix CVE-1999-0892?
To fix CVE-1999-0892, update to Netscape Communicator version 4.7 or later.
3
What systems are affected by CVE-1999-0892?
CVE-1999-0892 affects Netscape Communicator versions prior to 4.7, specifically version 4.5.
4
Can CVE-1999-0892 be exploited remotely?
Yes, CVE-1999-0892 can be exploited remotely by manipulating dynamic fonts in a web page.
5
What types of attacks can CVE-1999-0892 facilitate?
CVE-1999-0892 can facilitate arbitrary code execution attacks through buffer overflow exploitation.