Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-0233
Description:The International Domain Name (IDN) support in Firefox 1.0, Camino .8.5, and Mozilla before 1.7.6 allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates phishing attacks.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-0233
12461
http://www.securityfocus.com/bid/12461
20050206 state of homograph attacks
http://lists.grok.org.uk/pipermail/full-disclosure/2005-February/031459.html
20050208 International Domain Name [IDN] support in modern browsers allows attackers to spoof domain name URLs + SSL certs.
http://marc.info/?l=bugtraq&m=110782704923280&w=2
GLSA-200503-10
http://www.gentoo.org/security/en/glsa/glsa-200503-10.xml
GLSA-200503-30
http://www.gentoo.org/security/en/glsa/glsa-200503-30.xml
RHSA-2005:176
http://www.redhat.com/support/errata/RHSA-2005-176.html
RHSA-2005:384
http://www.redhat.com/support/errata/RHSA-2005-384.html
SUSE-SA:2005:016
http://www.novell.com/linux/security/advisories/2005_16_mozilla_firefox.html
http://www.mozilla.org/security/announce/mfsa2005-29.html
http://www.mozilla.org/security/announce/mfsa2005-29.html
http://www.shmoo.com/idn
http://www.shmoo.com/idn
http://www.shmoo.com/idn/homograph.txt
http://www.shmoo.com/idn/homograph.txt
multiple-browsers-idn-spoof(19236)
https://exchange.xforce.ibmcloud.com/vulnerabilities/19236
oval:org.mitre.oval:def:100029
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A100029
oval:org.mitre.oval:def:11229
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11229




© 1998-2025 E-Soft Inc. All rights reserved.