Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-0776

Опубликовано: 05 мар. 2009
Источник: debian
EPSS Низкий

Описание

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
icedovefixed2.0.0.22-1package
icedovefixed2.0.0.22-0lenny1squeezepackage
iceweaselfixed3.0package
iceweaselend-of-lifeetchpackage
xulrunnerfixed1.9.0.7-1package
xulrunnerend-of-lifeetchpackage
kompozerfixed1:0.8~alpha2+dfsg+svn129-3package

Примечания

  • Iceweasel in Lenny links against Xulrunner

EPSS

Процентиль: 74%
0.00865
Низкий

Связанные уязвимости

ubuntu
больше 16 лет назад

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

redhat
больше 16 лет назад

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

nvd
больше 16 лет назад

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

github
около 3 лет назад

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

oracle-oval
больше 16 лет назад

ELSA-2009-0315: firefox security update (CRITICAL)

EPSS

Процентиль: 74%
0.00865
Низкий