Vulnerabilities > CVE-2009-1827 - Resource Management Errors vulnerability in Mozilla Firefox 3.0.4

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
mozilla
CWE-399
exploit available

Summary

The SVG component in Mozilla Firefox 3.0.4 allows remote attackers to cause a denial of service (application hang) via a large value in the r (aka Radius) attribute of a circle element, related to an "unclamped loop."

Vulnerable Configurations

Part Description Count
Application
Mozilla
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionMozilla Firefox (unclamped loop) Denial of Service Exploit. CVE-2009-1827. Dos exploits for multiple platform
fileexploits/multiple/dos/8794.html
idEDB-ID:8794
last seen2016-02-01
modified2009-05-26
platformmultiple
port
published2009-05-26
reporterThierry Zoller
sourcehttps://www.exploit-db.com/download/8794/
titleMozilla Firefox unclamped loop Denial of Service Exploit
typedos