Loading
Netscape 6.2.3 and earlier, and Mozilla 1.0.1, allow remote attackers to corrupt heap memory and execute arbitrary code via a GIF image with a zero width.
Use Mozilla vendor hub and Mozilla product page to widen CVE-2002-1091 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2007-1794, CVE-2007-4039 and CVE-2005-3896 for nearby disclosures in the same product family.