Mozilla Javascript Array Object Heap Overflow (deprecated)

high Nessus Network Monitor Plugin ID 1328

Synopsis

The remote host is vulnerable to a heap overflow.

Description

The remote host is running a version of the Mozilla browser that contains a vulnerability in the JavaScript implementation. The condition is triggered when a large integer value (x40000000) is passed to the array constructor. The implementation of the array class fails to check for oversized integers, causing memory in the heap to be corrupted.

Solution

Upgrade to Mozilla 1.0.1, 1.1 or disable Javascript.

Plugin Details

Severity: High

ID: 1328

Family: SMTP Clients

Published: 8/20/2004

Updated: 3/6/2019

Risk Information

CVSS v2

Risk Factor: High

Base Score: 9.3

Temporal Score: 7.9

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

CVSS v3

Risk Factor: High

Base Score: 8.1

Temporal Score: 7.4

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:U/RC:C

Vulnerability Information

CPE: cpe:/a:mozilla:mozilla

Reference Information

BID: 5742