|
|
Family: Windows --> Category: infos
Mozilla Browser Network News Transport Protocol Remote Heap Overflow Vulnerability Vulnerability Scan
Vulnerability Scan Summary Acertains the version of Mozilla
Detailed Explanation for this Vulnerability Test
Synopsis :
A web browser on the remote host is prone to a heap overflow vulnerability.
Description :
The remote version of Mozilla is vulnerable to a heap overflow
vulnerability against its NNTP functionality.
This may allow a possible hacker to execute arbitrary code on the remote
host.
To exploit this flaw, a possible hacker would need to set up a rogue news
site and lure a victim on the remote host into reading news from it.
See also :
http://www.mozilla.org/security/announce/mfsa2005-06.html
Solution :
Upgrade to Mozilla 1.7.5 or newer.
Threat Level:
High / CVSS Base Score : 8
(AV:R/AC:H/Au:NR/C:C/A:C/I:C/B:N)
Click HERE for more information and discussions on this network vulnerability scan.
|