HomeMozillaCVE-2004-0903

CVE-2004-0903

UNKNOWN
10.0CVSS
Published: 2005-01-27
Updated: 2025-04-03
AI Analysis

Description

Stack-based buffer overflow in the writeGroup function in nsVCardObj.cpp for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows remote attackers to execute arbitrary code via malformed VCard attachments that are not properly handled when previewing a message.

CVSS Metrics

Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Access Vector
network
Access Cmplx
low
Auth
none
Confidentiality
complete
Integrity
complete
Availability
complete
Weaknesses
NVD-CWE-Other

Metadata

Primary Vendor
MOZILLA
Published
1/27/2005
Last Modified
4/3/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

mozilla : mozillamozilla : mozillamozilla : mozillamozilla : thunderbirdmozilla : thunderbirdmozilla : thunderbirdmozilla : thunderbirdconectiva : linuxconectiva : linuxredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linux_desktopredhat : fedora_coreredhat : linuxredhat : linuxredhat : linuxredhat : linuxredhat : linux_advanced_workstationredhat : linux_advanced_workstationsuse : suse_linuxsuse : suse_linuxsuse : suse_linuxsuse : suse_linuxsuse : suse_linuxsuse : suse_linuxsuse : suse_linuxsuse : suse_linux

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2004-0903 | UNKNOWN Severity | CVEDatabase.com | CVEDatabase.com