Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-2871

Buffer overflow in the International Domain Name (IDN) support in Mozilla Firefox 1.0.6 and earlier, and Netscape 8.0.3.3 and 7.2, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a hostname with all "soft" hyphens (character 0xAD), which is not properly handled by the NormalizeIDN call in nsStandardURL::BuildNormalizedSpec.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.516
EPSS Ranking 97.9%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2005-2871


Contact Us

Shodan ® - All rights reserved