CVE-2008-0017
The http-index-format MIME type parser (nsDirIndexParser) in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 does not check for an allocation failure, which allows remote attackers to cause a denial of service…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (7.68%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The http-index-format MIME type parser (nsDirIndexParser) in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 does not check for an allocation failure, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP index response with a crafted 200 header, which triggers memory corruption and a buffer overflow.
- CVSS 2.0
- 9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 7.68% probability · 94th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- mozilla/firefox · mozilla/seamonkey · canonical/ubuntu linux · debian/debian linux
- Source
- cve@mitre.org
References
- http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00004.htmlThird Party Advisory
- http://secunia.com/advisories/32684Third Party Advisory
- http://secunia.com/advisories/32693Third Party Advisory
- http://secunia.com/advisories/32694Third Party Advisory
- http://secunia.com/advisories/32695Third Party Advisory
- http://secunia.com/advisories/32713Third Party Advisory
- http://secunia.com/advisories/32714Third Party Advisory
- http://secunia.com/advisories/32721Third Party Advisory
- http://secunia.com/advisories/32778Third Party Advisory
- http://secunia.com/advisories/32845Third Party Advisory
- http://secunia.com/advisories/32853Third Party Advisory
- http://secunia.com/advisories/33433Third Party Advisory
- http://secunia.com/advisories/34501Third Party Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-256408-1Broken Link
- http://ubuntu.com/usn/usn-667-1Third Party Advisory
- http://www.debian.org/security/2008/dsa-1669Third Party Advisory
- http://www.debian.org/security/2008/dsa-1671Third Party Advisory
- http://www.debian.org/security/2009/dsa-1697Third Party Advisory
- http://www.iss.net/threats/311.htmlBroken Link
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:228Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:230Third Party Advisory
- http://www.mozilla.org/security/announce/2008/mfsa2008-54.htmlVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0977.htmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0978.htmlThird Party Advisory
- http://www.securityfocus.com/bid/32281Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1021185Third Party Advisory, VDB Entry
- http://www.us-cert.gov/cas/techalerts/TA08-319A.htmlThird Party Advisory, US Government Resource
- http://www.vupen.com/english/advisories/2008/3146Third Party Advisory
- http://www.vupen.com/english/advisories/2009/0977Third Party Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=443299Issue Tracking, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.