Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://bugzilla.mozilla.org/show_bug.cgi?id=258005 http://bugzilla.mozilla.org/show_bug.cgi?id=245066 http://bugzilla.mozilla.org/show_bug.cgi?id=226669 http://bugzilla.mozilla.org/show_bug.cgi?id=256316 http://www.vuxml.org/freebsd/93d6162f-1153-11d9-bc4a-000c41e2cdad.html
Insight
The following packages are affected:
thunderbird
firefox
mozilla
mozilla-gtk1
linux-mozilla
linux-mozillafirebird
CVE-2004-0902
Multiple heap-based buffer overflows in Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via (1) the 'Send page' functionality, (2) certain responses from a malicious POP3 server, or (3) a link containing a non-ASCII hostname.
Severity
Classification
-
CVE CVE-2004-0902 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities