First published: Fri Sep 24 2004(Updated: )
Stack-based buffer overflow in the writeGroup function in nsVCardObj.cpp for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows remote attackers to execute arbitrary code via malformed VCard attachments that are not properly handled when previewing a message.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Thunderbird | =0.7.2 | |
Conectiva Linux | =9.0 | |
Mozilla Mozilla | =1.7 | |
Mozilla Mozilla | =1.7.1 | |
Mozilla Thunderbird | =0.7.3 | |
Mozilla Thunderbird | =0.7 | |
Conectiva Linux | =10.0 | |
Mozilla Mozilla | =1.7.2 | |
Mozilla Thunderbird | =0.7.1 | |
Suse Suse Linux | =9.0 | |
Redhat Enterprise Linux | =2.1 | |
Redhat Linux | =7.3 | |
Redhat Enterprise Linux Desktop | =3.0 | |
Suse Suse Linux | =9.0 | |
Redhat Linux Advanced Workstation | =2.1 | |
Suse Suse Linux | =8.2 | |
Redhat Enterprise Linux | =3.0 | |
Redhat Enterprise Linux | =2.1 | |
Suse Suse Linux | =8 | |
Suse Suse Linux | =1.0 | |
Redhat Enterprise Linux | =2.1 | |
Suse Suse Linux | =9.0 | |
Redhat Fedora Core | =core_1.0 | |
Redhat Linux | =7.3 | |
Redhat Linux | =9.0 | |
Redhat Linux Advanced Workstation | =2.1 | |
Suse Suse Linux | =9.1 | |
Redhat Enterprise Linux | =3.0 | |
Redhat Enterprise Linux | =2.1 | |
Redhat Linux | =7.3 | |
Redhat Enterprise Linux | =2.1 | |
Suse Suse Linux | =8.1 | |
Redhat Enterprise Linux | =2.1 | |
Redhat Enterprise Linux | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.