Mozilla_Products_Regular_Expressions_Heap_Corruption_attack

Strike ID:
G06-6iu01
CVSS:
5.0 (AV:N/AC:L/Au:N/C:N/I:N/A:P)
False Positive:
t
Variants:
1
Year:
2006

Description

This strike exploits a memory corruption vulnerability in Mozilla Foundation's family of browser products. The flaw is caused by a heap-based buffer overflow when parsing crafted regular expressions. A remote attacker could exploit this vulnerability to execute arbitrary code in the security context of the target browser.

CVE

References

Bid