Back to Database
Status published
Medium
CVE-2000-0655
Netscape Communicator 4.73 and earlier allows remote attackers to cause...
Vulnerability Description
Netscape Communicator 4.73 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a JPEG image containing a comment with an illegal field length of 1.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2000-0655
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.redhat.com/support/errata/RHSA-2000-046.html
- http://www.securityfocus.com/bid/1503
- http://www.turbolinux.com/pipermail/tl-security-announce/2000-August/000016.html
- ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:39.netscape.asc
- http://www.securityfocus.com/frames/?content=/templates/archive.pike%3Flist%3D1%26msg%3D200007242356.DAA01274%40false.com
- http://www.novell.com/linux/security/advisories/suse_security_announce_60.html
- http://archives.neohapsis.com/archives/bugtraq/2000-07/0456.html
- http://archives.neohapsis.com/archives/bugtraq/2000-08/0116.html
- ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-011.txt.asc
More from mozilla
View All →CVE-2025-66453
Rhino vulnerable high CPU usage and potential DoS when passing specific numbers to toFixed() function
Medium
5.5
CVE-2022-29167
ReDoS vulnerability in header parsing in hawk
High
7.4
CVE-2021-21354
Open redirect in pollbot
High
7.4
CVE-2020-15660
Missing checks on Content-Type headers in geckodriver before 0.27.0 could...
High
8.8
CVE-2018-7753
An issue was discovered in Bleach 2.1.x before 2.1.3. Attributes...
Critical
9.8
Affected Vendor
mozilla
View all reports →Affected Software
mozilla, communicator
Vulnerable Versions:
m15, 4.0, 4.05, 4.5, 4.5_beta, 4.06, 4.6, 4.07, 4.7, 4.08, 4.51, 4.61, 4.72, 4.73
Timeline
Official Publish:
October 13th, 2000
Last Modified:
August 8th, 2024
Added to House:
July 17th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.