oval:org.mitre.oval:def:9231

Definition Id: oval:org.mitre.oval:def:9231
 
Oval ID: oval:org.mitre.oval:def:9231
Title: The install function in Firefox 1.0.3 allows remote web sites on the browser's whitelist, such as update.mozilla.org or addon.mozilla.org, to execute arbitrary Javascript with chrome privileges, leading to arbitrary code execution on the system when combined with vulnerabilities such as CVE-2005-1476, as demonstrated using a javascript: URL as the package icon and a cross-site scripting (XSS) attack on a vulnerable whitelist site.
Description: The install function in Firefox 1.0.3 allows remote web sites on the browser's whitelist, such as update.mozilla.org or addon.mozilla.org, to execute arbitrary Javascript with chrome privileges, leading to arbitrary code execution on the system when combined with vulnerabilities such as CVE-2005-1476, as demonstrated using a javascript: URL as the package icon and a cross-site scripting (XSS) attack on a vulnerable whitelist site.
Family: unix Class: vulnerability
Reference(s): CVE-2005-1477
Version: 5
Platform(s): Red Hat Enterprise Linux 3
CentOS Linux 3
Red Hat Enterprise Linux 4
CentOS Linux 4
Oracle Linux 4
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:16636
 
Oval ID: oval:org.mitre.oval:def:16636
Title: CentOS Linux 4.x
Description: The operating system installed on the system is CentOS Linux 4.x
Family: unix Class: inventory
Reference(s): cpe:/o:centos:centos:4
Version: 3
Platform(s): CentOS Linux 4
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:9231
Definition Id: oval:org.mitre.oval:def:15990
 
Oval ID: oval:org.mitre.oval:def:15990
Title: Oracle Linux 4.x
Description: The operating system installed on the system is Oracle Linux 4.x
Family: unix Class: inventory
Reference(s): cpe:/o:oracle:linux:4
Version: 5
Platform(s): Oracle Linux 4
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:9231
Definition Id: oval:org.mitre.oval:def:11782
 
Oval ID: oval:org.mitre.oval:def:11782
Title: The operating system installed on the system is Red Hat Enterprise Linux 3
Description: The operating system installed on the system is Red Hat Enterprise Linux 3.
Family: unix Class: inventory
Reference(s): cpe:/o:redhat:enterprise_linux:3
Version: 7
Platform(s): Red Hat Enterprise Linux 3
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:9231
Definition Id: oval:org.mitre.oval:def:16651
 
Oval ID: oval:org.mitre.oval:def:16651
Title: CentOS Linux 3.x
Description: The operating system installed on the system is CentOS Linux 3.x
Family: unix Class: inventory
Reference(s): cpe:/o:centos:centos:3
Version: 3
Platform(s): CentOS Linux 3
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:9231
Definition Id: oval:org.mitre.oval:def:11831
 
Oval ID: oval:org.mitre.oval:def:11831
Title: The operating system installed on the system is Red Hat Enterprise Linux 4
Description: The operating system installed on the system is Red Hat Enterprise Linux 4.
Family: unix Class: inventory
Reference(s): cpe:/o:redhat:enterprise_linux:4
Version: 7
Platform(s): Red Hat Enterprise Linux 4
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:9231