Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://bugzilla.mozilla.org/show_bug.cgi?id=257314 http://www.vuxml.org/freebsd/da690355-1159-11d9-bc4a-000c41e2cdad.html
Insight
The following packages are affected:
thunderbird
mozilla
mozilla-gtk1
linux-mozilla
CVE-2004-0903
Stack-based buffer overflow in the writeGroup function in nsVCardObj.cpp for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows remote attackers to execute arbitrary code via malformed VCard attachments that are not properly handled when previewing a message.
Severity
Classification
-
CVE CVE-2004-0903 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities