Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow remote attackers to execute arbitrary code via wide bitmap files that trigger heap-based buffer overflows.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2004-09-24T04:00:00

Updated: 2024-08-08T00:31:47.831Z

Reserved: 2004-09-23T00:00:00

Link: CVE-2004-0904

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2004-12-31T05:00:00.000

Modified: 2017-10-11T01:29:37.357

Link: CVE-2004-0904

cve-icon Redhat

Severity :

Publid Date: 2004-08-27T00:00:00Z

Links: CVE-2004-0904 - Bugzilla