Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-0776

Опубликовано: 05 мар. 2009
Источник: debian

Описание

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
icedovefixed2.0.0.22-1package
icedovefixed2.0.0.22-0lenny1squeezepackage
iceweaselfixed3.0package
iceweaselend-of-lifeetchpackage
xulrunnerfixed1.9.0.7-1package
xulrunnerend-of-lifeetchpackage
kompozerfixed1:0.8~alpha2+dfsg+svn129-3package

Примечания

  • Iceweasel in Lenny links against Xulrunner

Связанные уязвимости

ubuntu
больше 16 лет назад

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

redhat
больше 16 лет назад

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

nvd
больше 16 лет назад

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

github
больше 3 лет назад

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

oracle-oval
больше 16 лет назад

ELSA-2009-0315: firefox security update (CRITICAL)