Executive Summary
Summary | |
---|---|
Title | New Mozilla Firefox packages fix several vulnerabilities |
Informations | |||
---|---|---|---|
Name | DSA-779 | First vendor Publication | 2005-08-20 |
Vendor | Debian | Last vendor Modification | 2005-09-01 |
Severity (Vendor) | N/A | Revision | 2 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:P/I:P/A:P) | |||
---|---|---|---|
Cvss Base Score | 7.5 | Attack Range | Network |
Cvss Impact Score | 6.4 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
We experienced that the update for Mozilla Firefox from DSA 779-1 unfortunately was a regression in several cases. Since the usual praxis of backporting apparently does not work, this update is basically version 1.0.6 with the version number rolled back, and hence still named 1.0.4-*. For completeness below is the original advisory text: Several problems have been discovered in Mozilla Firefox, a lightweight web browser based on Mozilla. The Common Vulnerabilities and Exposures project identifies the following problems: CAN-2005-2260 The browser user interface does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user. CAN-2005-2261 XML scripts ran even when Javascript disabled. CAN-2005-2262 The user can be tricked to executing arbitrary JavaScript code by using a JavaScript URL as wallpaper. CAN-2005-2263 It is possible for a remote attacker to execute a callback function in the context of another domain (i.e. frame). CAN-2005-2264 By opening a malicious link in the sidebar it is possible for remote attackers to steal sensitive information. CAN-2005-2265 Missing input sanitising of InstallVersion.compareTo() can cause the application to crash. CAN-2005-2266 Remote attackers could steal sensitive information such as cookies and passwords from web sites by accessing data in alien frames. CAN-2005-2267 By using standalone applications such as Flash and QuickTime to open a javascript: URL, it is possible for a remote attacker to steal sensitive information and possibly execute arbitrary code. CAN-2005-2268 It is possible for a Javascript dialog box to spoof a dialog box from a trusted site and facilitates phishing attacks. CAN-2005-2269 Remote attackers could modify certain tag properties of DOM nodes that could lead to the execution of arbitrary script or code. CAN-2005-2270 The Mozilla browser familie does not properly clone base objects, which allows remote attackers to execute arbitrary code. The old stable distribution (woody) is not affected by these problems. For the stable distribution (sarge) these problems have been fixed in version 1.0.4-2sarge3. For the unstable distribution (sid) these problems have been fixed in version 1.0.6-1. We recommend that you upgrade your Mozilla Firefox packages. |
Original Source
Url : http://www.debian.org/security/2005/dsa-779 |
CAPEC : Common Attack Pattern Enumeration & Classification
Id | Name |
---|---|
CAPEC-17 | Accessing, Modifying or Executing Executable Files |
CAPEC-30 | Hijacking a Privileged Thread of Execution |
CAPEC-35 | Leverage Executable Code in Nonexecutable Files |
CWE : Common Weakness Enumeration
% | Id | Name |
---|
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:100003 | |||
Oval ID: | oval:org.mitre.oval:def:100003 | ||
Title: | Firefox and Mozilla Shared Object Code Execution | ||
Description: | Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone base objects, which allows remote attackers to execute arbitrary code by navigating the prototype chain to reach a privileged object. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2270 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100004 | |||
Oval ID: | oval:org.mitre.oval:def:100004 | ||
Title: | Firefox and Mozilla DOM Node Spoofing | ||
Description: | Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing"). | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2269 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100005 | |||
Oval ID: | oval:org.mitre.oval:def:100005 | ||
Title: | Firefox and Mozilla Javascript Dialog Box Spoofing | ||
Description: | Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2268 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100006 | |||
Oval ID: | oval:org.mitre.oval:def:100006 | ||
Title: | Firefox External App Code Acceptance Vulnerability | ||
Description: | Firefox before 1.0.5 allows remote attackers to steal information and possibly execute arbitrary code by using standalone applications such as Flash and QuickTime to open a javascript: URL, which is run in the context of the previous page, and may lead to code execution if the standalone application loads a privileged chrome: URL. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2267 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | Mozilla Firefox |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100008 | |||
Oval ID: | oval:org.mitre.oval:def:100008 | ||
Title: | InstallVersion.compareTo() DoS and Code Execution Vulnerability | ||
Description: | Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 allows remote attackers to cause a denial of service (access violation and crash), and possibly execute arbitrary code, by calling InstallVersion.compareTo with an object instead of a string. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2265 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | mozilla Mozilla Firefox |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100009 | |||
Oval ID: | oval:org.mitre.oval:def:100009 | ||
Title: | Firefox Sidebar Script Injection via _search Target | ||
Description: | Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2264 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | Mozilla Firefox |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100010 | |||
Oval ID: | oval:org.mitre.oval:def:100010 | ||
Title: | Firefox InstallTrigger Callback Vulnerability | ||
Description: | The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2263 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | Mozilla Firefox |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100011 | |||
Oval ID: | oval:org.mitre.oval:def:100011 | ||
Title: | Firefox Wallpaper Vulnerability | ||
Description: | Firefox 1.0.3 and 1.0.4, and Netscape 8.0.2, allows remote attackers to execute arbitrary code by tricking the user into using the "Set As Wallpaper" (in Firefox) or "Set as Background" (in Netscape) context menu on an image URL that is really a javascript: URL with an eval statement, aka "Firewalling." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2262 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | Mozilla Firefox |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100012 | |||
Oval ID: | oval:org.mitre.oval:def:100012 | ||
Title: | XBL Script Security Bypass Vulnerability | ||
Description: | Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, Netscape 8.0.2, and K-Meleon 0.9 runs XBL scripts even when Javascript has been disabled, which makes it easier for remote attackers to bypass such protection. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2261 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | mozilla Mozilla Firefox Mozilla Thunderbird |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100013 | |||
Oval ID: | oval:org.mitre.oval:def:100013 | ||
Title: | Improper Handling of Synthetic Events in Mozilla | ||
Description: | The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2260 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | mozilla Mozilla Firefox |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100016 | |||
Oval ID: | oval:org.mitre.oval:def:100016 | ||
Title: | Mozilla Suite InstallTrigger Callback Vulnerability | ||
Description: | The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2263 | Version: | 6 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:100107 | |||
Oval ID: | oval:org.mitre.oval:def:100107 | ||
Title: | Firefox and Mozilla top.focus() Cross-Site Scripting Vulnerability | ||
Description: | Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame, even when the parent is in a different domain, which violates the same origin policy and allows remote attackers to steal sensitive information such as cookies and passwords from web sites whose child frames do not verify that they are in the same domain as their parents. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2266 | Version: | 2 |
Platform(s): | Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 | Product(s): | mozilla |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:10712 | |||
Oval ID: | oval:org.mitre.oval:def:10712 | ||
Title: | Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame, even when the parent is in a different domain, which violates the same origin policy and allows remote attackers to steal sensitive information such as cookies and passwords from web sites whose child frames do not verify that they are in the same domain as their parents. | ||
Description: | Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame, even when the parent is in a different domain, which violates the same origin policy and allows remote attackers to steal sensitive information such as cookies and passwords from web sites whose child frames do not verify that they are in the same domain as their parents. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2266 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 3 CentOS Linux 3 Red Hat Enterprise Linux 4 CentOS Linux 4 Oracle Linux 4 | Product(s): | |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1073 | |||
Oval ID: | oval:org.mitre.oval:def:1073 | ||
Title: | RHE4 Firefox External App Code Acceptance Vulnerability | ||
Description: | Firefox before 1.0.5 allows remote attackers to steal information and possibly execute arbitrary code by using standalone applications such as Flash and QuickTime to open a javascript: URL, which is run in the context of the previous page, and may lead to code execution if the standalone application loads a privileged chrome: URL. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2267 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:11097 | |||
Oval ID: | oval:org.mitre.oval:def:11097 | ||
Title: | Firefox 1.0.3 and 1.0.4, and Netscape 8.0.2, allows remote attackers to execute arbitrary code by tricking the user into using the "Set As Wallpaper" (in Firefox) or "Set as Background" (in Netscape) context menu on an image URL that is really a javascript: URL with an eval statement, aka "Firewalling." | ||
Description: | Firefox 1.0.3 and 1.0.4, and Netscape 8.0.2, allows remote attackers to execute arbitrary code by tricking the user into using the "Set As Wallpaper" (in Firefox) or "Set as Background" (in Netscape) context menu on an image URL that is really a javascript: URL with an eval statement, aka "Firewalling." | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2262 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 CentOS Linux 4 Oracle Linux 4 | Product(s): | |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:1172 | |||
Oval ID: | oval:org.mitre.oval:def:1172 | ||
Title: | RHE3 Firefox External App Code Acceptance Vulnerability | ||
Description: | Firefox before 1.0.5 allows remote attackers to steal information and possibly execute arbitrary code by using standalone applications such as Flash and QuickTime to open a javascript: URL, which is run in the context of the previous page, and may lead to code execution if the standalone application loads a privileged chrome: URL. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2267 | Version: | 1 |
Platform(s): | Red Hat Enterprise Linux 3 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1226 | |||
Oval ID: | oval:org.mitre.oval:def:1226 | ||
Title: | RHE4 Improper Handling of Synthetic Events in Mozilla | ||
Description: | The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2260 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1258 | |||
Oval ID: | oval:org.mitre.oval:def:1258 | ||
Title: | RHE3 Firefox and Mozilla DOM Node Spoofing | ||
Description: | Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing"). | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2269 | Version: | 1 |
Platform(s): | Red Hat Enterprise Linux 3 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1268 | |||
Oval ID: | oval:org.mitre.oval:def:1268 | ||
Title: | RHE3 Firefox and Mozilla Javascript Dialog Box Spoofing | ||
Description: | Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability." | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2268 | Version: | 1 |
Platform(s): | Red Hat Enterprise Linux 3 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1281 | |||
Oval ID: | oval:org.mitre.oval:def:1281 | ||
Title: | RHE3 Firefox InstallTrigger Callback Vulnerability | ||
Description: | The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2263 | Version: | 1 |
Platform(s): | Red Hat Enterprise Linux 3 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1311 | |||
Oval ID: | oval:org.mitre.oval:def:1311 | ||
Title: | RHE4 Firefox InstallTrigger Callback Vulnerability | ||
Description: | The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2263 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1313 | |||
Oval ID: | oval:org.mitre.oval:def:1313 | ||
Title: | RHE4 Firefox and Mozilla Javascript Dialog Box Spoofing | ||
Description: | Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability." | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2268 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1348 | |||
Oval ID: | oval:org.mitre.oval:def:1348 | ||
Title: | RHE3 XBL Script Security Bypass Vulnerability | ||
Description: | Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, Netscape 8.0.2, and K-Meleon 0.9 runs XBL scripts even when Javascript has been disabled, which makes it easier for remote attackers to bypass such protection. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2261 | Version: | 1 |
Platform(s): | Red Hat Enterprise Linux 3 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1415 | |||
Oval ID: | oval:org.mitre.oval:def:1415 | ||
Title: | RHE4 Mozilla top.focus() Cross-Site Scripting Vulnerability | ||
Description: | Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame, even when the parent is in a different domain, which violates the same origin policy and allows remote attackers to steal sensitive information such as cookies and passwords from web sites whose child frames do not verify that they are in the same domain as their parents. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2266 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:417 | |||
Oval ID: | oval:org.mitre.oval:def:417 | ||
Title: | RHE4 InstallVersion.compareTo() DoS and Code Execution Vulnerability | ||
Description: | Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 allows remote attackers to cause a denial of service (access violation and crash), and possibly execute arbitrary code, by calling InstallVersion.compareTo with an object instead of a string. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2265 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:550 | |||
Oval ID: | oval:org.mitre.oval:def:550 | ||
Title: | RHE4 Firefox and Mozilla Shared Object Code Execution | ||
Description: | Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone base objects, which allows remote attackers to execute arbitrary code by navigating the prototype chain to reach a privileged object. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2270 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:729 | |||
Oval ID: | oval:org.mitre.oval:def:729 | ||
Title: | RHE4 Firefox and Mozilla DOM Node Spoofing | ||
Description: | Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing"). | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2269 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:742 | |||
Oval ID: | oval:org.mitre.oval:def:742 | ||
Title: | RHE3 Improper Handling of Synthetic Events in Mozilla | ||
Description: | The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2260 | Version: | 1 |
Platform(s): | Red Hat Enterprise Linux 3 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:773 | |||
Oval ID: | oval:org.mitre.oval:def:773 | ||
Title: | RHE3 Mozilla top.focus() Cross-Site Scripting Vulnerability | ||
Description: | Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame, even when the parent is in a different domain, which violates the same origin policy and allows remote attackers to steal sensitive information such as cookies and passwords from web sites whose child frames do not verify that they are in the same domain as their parents. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2266 | Version: | 1 |
Platform(s): | Red Hat Enterprise Linux 3 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:781 | |||
Oval ID: | oval:org.mitre.oval:def:781 | ||
Title: | RHE3 InstallVersion.compareTo() DoS and Code Execution Vulnerability | ||
Description: | Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 allows remote attackers to cause a denial of service (access violation and crash), and possibly execute arbitrary code, by calling InstallVersion.compareTo with an object instead of a string. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2265 | Version: | 1 |
Platform(s): | Red Hat Enterprise Linux 3 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:808 | |||
Oval ID: | oval:org.mitre.oval:def:808 | ||
Title: | RHE4 XBL Script Security Bypass Vulnerability | ||
Description: | Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, Netscape 8.0.2, and K-Meleon 0.9 runs XBL scripts even when Javascript has been disabled, which makes it easier for remote attackers to bypass such protection. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2261 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:817 | |||
Oval ID: | oval:org.mitre.oval:def:817 | ||
Title: | RHE3 Firefox and Mozilla Shared Object Code Execution | ||
Description: | Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone base objects, which allows remote attackers to execute arbitrary code by navigating the prototype chain to reach a privileged object. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2270 | Version: | 1 |
Platform(s): | Red Hat Enterprise Linux 3 | Product(s): | mozilla |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:9777 | |||
Oval ID: | oval:org.mitre.oval:def:9777 | ||
Title: | Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing"). | ||
Description: | Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing"). | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2269 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 3 CentOS Linux 3 Red Hat Enterprise Linux 4 CentOS Linux 4 Oracle Linux 4 | Product(s): | |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:9887 | |||
Oval ID: | oval:org.mitre.oval:def:9887 | ||
Title: | Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL. | ||
Description: | Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL. | ||
Family: | unix | Class: | vulnerability |
Reference(s): | CVE-2005-2264 | Version: | 5 |
Platform(s): | Red Hat Enterprise Linux 4 CentOS Linux 4 Oracle Linux 4 | Product(s): | |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
OpenVAS Exploits
Date | Description |
---|---|
2008-09-24 | Name : Gentoo Security Advisory GLSA 200507-24 (mozilla) File : nvt/glsa_200507_24.nasl |
2008-09-04 | Name : FreeBSD Ports: firefox File : nvt/freebsd_firefox18.nasl |
2008-01-17 | Name : Debian Security Advisory DSA 779-1 (mozilla-firefox) File : nvt/deb_779_1.nasl |
2008-01-17 | Name : Debian Security Advisory DSA 779-2 (mozilla-firefox) File : nvt/deb_779_2.nasl |
2008-01-17 | Name : Debian Security Advisory DSA 781-1 (mozilla-thunderbird) File : nvt/deb_781_1.nasl |
2008-01-17 | Name : Debian Security Advisory DSA 810-1 (mozilla) File : nvt/deb_810_1.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
77534 | Netscape Multiple DHTML Property Manipulation XSS |
17971 | Mozilla Firefox Standalone Media Player Passed URL Script Execution |
17970 | Mozilla Multiple Browser Base Object Cloning Manipulation Arbitrary Code Exec... |
17969 | Multiple Browser XHTML IMG Element Node Spoofing |
17968 | Mozilla Multiple Browsers InstallVersion.compareTo() Access Violation A code execution flaw exists in multiple Mozilla-based web browsers. The InstallVersion.compare() method fails to validate input. With a specially crafted website, a context-dependent attacker can cause arbitrary code execution resulting in a loss of integrity. |
17967 | Mozilla Browsers _search Target Sidebar Script Injection |
17966 | Mozilla Browsers InstallTrigger.install() Callback Same-origin Violation |
17965 | Multiple Browser "Set As Wallpaper" Dialog Arbitrary Script Execution |
17964 | Multiple Browser Content-generated Event Multiple Issues |
17942 | Multiple Browser XBL Controls Arbitrary Script Execution |
17913 | Mozilla Firefox Multiple DHTML Property Manipulation XSS |
17397 | Multiple Browser Javascript Dialog Origin Spoofing Multiple web browsers contain a Javascript flaw that may lead to an unauthorized password exposure or other information disclosure. It is possible for a malicious web site to open a dialog box in front of a window displaying a trusted web site. It may appear that the dialog box comes from the trusted web site prompting users to enter passwords or other sensitive information, which may lead to a loss of confidentiality. |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Mozilla compareTo arbitrary code execution attempt RuleID : 10131 - Revision : 10 - Type : BROWSER-FIREFOX |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2006-07-05 | Name : The remote CentOS host is missing a security update. File : centos_RHSA-2005-601.nasl - Type : ACT_GATHER_INFO |
2006-07-05 | Name : The remote CentOS host is missing a security update. File : centos_RHSA-2005-586.nasl - Type : ACT_GATHER_INFO |
2006-07-03 | Name : The remote CentOS host is missing one or more security updates. File : centos_RHSA-2005-587.nasl - Type : ACT_GATHER_INFO |
2006-01-15 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-157-1.nasl - Type : ACT_GATHER_INFO |
2006-01-15 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-155-1.nasl - Type : ACT_GATHER_INFO |
2006-01-15 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-149-3.nasl - Type : ACT_GATHER_INFO |
2006-01-15 | Name : The remote Ubuntu host is missing one or more security-related patches. File : ubuntu_USN-149-1.nasl - Type : ACT_GATHER_INFO |
2005-10-05 | Name : The remote Mandrake Linux host is missing one or more security updates. File : mandrake_MDKSA-2005-128.nasl - Type : ACT_GATHER_INFO |
2005-09-13 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-810.nasl - Type : ACT_GATHER_INFO |
2005-08-23 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-779.nasl - Type : ACT_GATHER_INFO |
2005-08-23 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-781.nasl - Type : ACT_GATHER_INFO |
2005-08-01 | Name : The remote FreeBSD host is missing one or more security-related updates. File : freebsd_pkg_5d72701af60111d9bcd102061b08fc24.nasl - Type : ACT_GATHER_INFO |
2005-07-22 | Name : The remote Fedora Core host is missing a security update. File : fedora_2005-616.nasl - Type : ACT_GATHER_INFO |
2005-07-22 | Name : The remote Fedora Core host is missing a security update. File : fedora_2005-619.nasl - Type : ACT_GATHER_INFO |
2005-07-22 | Name : The remote Red Hat host is missing a security update. File : redhat-RHSA-2005-601.nasl - Type : ACT_GATHER_INFO |
2005-07-22 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2005-587.nasl - Type : ACT_GATHER_INFO |
2005-07-21 | Name : The remote Fedora Core host is missing a security update. File : fedora_2005-605.nasl - Type : ACT_GATHER_INFO |
2005-07-21 | Name : The remote Fedora Core host is missing a security update. File : fedora_2005-603.nasl - Type : ACT_GATHER_INFO |
2005-07-21 | Name : The remote Red Hat host is missing a security update. File : redhat-RHSA-2005-586.nasl - Type : ACT_GATHER_INFO |
2005-07-21 | Name : The remote Windows host contains a mail client that is affected by multiple v... File : mozilla_thunderbird_106.nasl - Type : ACT_GATHER_INFO |
2005-07-21 | Name : The remote Fedora Core host is missing a security update. File : fedora_2005-606.nasl - Type : ACT_GATHER_INFO |
2005-07-21 | Name : The remote Fedora Core host is missing a security update. File : fedora_2005-604.nasl - Type : ACT_GATHER_INFO |
2005-07-13 | Name : The remote Windows host contains a web browser that is affected by multiple v... File : mozilla_firefox_105.nasl - Type : ACT_GATHER_INFO |
2005-07-13 | Name : A web browser installed on the remote host contains multiple vulnerabilities. File : mozilla_179.nasl - Type : ACT_GATHER_INFO |
Alert History
Date | Informations |
---|---|
2014-02-17 11:34:14 |
|