Mozilla Firefox 1.0.7 and 1.5.0.1 allows remote attackers to cause a denial of service (crash) via an HTML tag with a large number of script action handlers such as onload and onmouseover, which triggers the crash when the user views the page source. NOTE: Red Hat has disputed this issue, suggesting that "It is likely the reporter was running the IE Tab extension," and Mozilla also confirmed that this is not an issue in Firefox itself
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:08
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/31833 - | |
References | () http://securityreason.com/securityalert/593 - | |
References | () http://www.securityfocus.com/archive/1/427977/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/428159/100/0/threaded - |
07 Nov 2023, 01:58
Type | Values Removed | Values Added |
---|---|---|
Summary | Mozilla Firefox 1.0.7 and 1.5.0.1 allows remote attackers to cause a denial of service (crash) via an HTML tag with a large number of script action handlers such as onload and onmouseover, which triggers the crash when the user views the page source. NOTE: Red Hat has disputed this issue, suggesting that "It is likely the reporter was running the IE Tab extension," and Mozilla also confirmed that this is not an issue in Firefox itself |
Information
Published : 2006-03-19 11:06
Updated : 2024-11-21 00:08
NVD link : CVE-2006-1273
Mitre link : CVE-2006-1273
CVE.ORG link : CVE-2006-1273
JSON object : View
Products Affected
mozilla
- firefox
CWE