Unrated severityNVD Advisory· Published Nov 8, 2007· Updated Jun 16, 2026
CVE-2007-5896
CVE-2007-5896
Description
Mozilla Firefox 2.0.0.9 allows remote attackers to cause a denial of service (CPU consumption and crash) via an iframe with Javascript that sets the document.location to contain a leading NULL byte (\x00) and a (1) res://, (2) about:config, or (3) file:/// URI.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:mozilla:firefox:2.0.0.9:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:mozilla:firefox:2.0.0.9:*:*:*:*:*:*:*
- (no CPE)range: 2.0.0.9
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.