CVE Vulnerabilities

CVE-2005-2414

Published: Aug 03, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Race condition in the xpcom library, as used by web browsers such as Firefox, Mozilla, Netscape, and Galeon, allows remote attackers to cause a denial of service (application crash) via a large HTML file that loads a DOM call from within nested DIV tags, which causes part of the currently rendering page and referenced objects to be deleted.

Affected Software

NameVendorStart VersionEnd Version
XpcomXpcom**
FirefoxUbuntudapper*
FirefoxUbuntudevel*
FirefoxUbuntuedgy*
FirefoxUbuntufeisty*

References