CVE-2005-0592: Buffer Overflow
Heap-based buffer overflow in the UTF8ToNewUnicode function for Firefox before 1.0.1 and Mozilla before 1.7.6 might allow remote attackers to cause a denial of service (crash) or execute arbitrary code via invalid sequences in a UTF8 encoded string that result in a zero length value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0592?
CVE-2005-0592 has been classified as a potential denial of service attack vector, which could potentially allow arbitrary code execution.
How do I fix CVE-2005-0592?
To fix CVE-2005-0592, update your Firefox or Mozilla installation to at least version 1.0.1 or 1.7.6 respectively.
Which versions of Firefox are affected by CVE-2005-0592?
CVE-2005-0592 affects Firefox versions before 1.0.1, including versions 0.8 through 0.10.
Which versions of Mozilla are affected by CVE-2005-0592?
CVE-2005-0592 affects various versions of Mozilla, including all releases before 1.7.6 and certain release candidates.
What type of attack does CVE-2005-0592 allow?
CVE-2005-0592 could allow attackers to conduct a denial of service attack or execute arbitrary code through crafted UTF8 encoded strings.