AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2008-0017

HIGH · CVSS 9.3 EPSS 7.68%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-11-13 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 9.3. It affects Firefox. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2008-0017
Severity
HIGH
CVSS
9.3
EPSS
7.68%
Firefox

Original NVD Description

The http-index-format MIME type parser (nsDirIndexParser) in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 does not check for an allocation failure, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP index response with a crafted 200 header, which triggers memory corruption and a buffer overflow.