Vulnerabilities > CVE-2004-1200 - Denial Of Service vulnerability in Mozilla Firefox Infinite Array Sort

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
mozilla
nessus

Summary

Firefox and Mozilla allow remote attackers to cause a denial of service (application crash from memory consumption), as demonstrated using Javascript code that continuously creates nested arrays and then sorts the newly created arrays.

Nessus

NASL familyWindows
NASL idMOZILLA_FIREFOX_101.NASL
descriptionThe installed version of Firefox is earlier than 1.0.1. Such versions have multiple security issues, including vulnerabilities that could allow an attacker to impersonate a website by using an International Domain Name, or vulnerabilities that could allow arbitrary code execution.
last seen2020-06-01
modified2020-06-02
plugin id17218
published2005-02-25
reporterThis script is Copyright (C) 2005-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/17218
titleFirefox < 1.0.1 Multiple Vulnerabilities