Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-3004

Опубликовано: 29 сент. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

РелизСтатусПримечание
devel

released

7.0.1+build1+nobinonly-0ubuntu1
hardy

ignored

end of life
lucid

not-affected

maverick

not-affected

3.6.23+build1+nobinonly-0ubuntu0.10.10.1
natty

released

7.0.1+build1+nobinonly-0ubuntu0.11.04.1
upstream

released

7.0

Показывать по

EPSS

Процентиль: 63%
0.01136
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 14 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

nvd
почти 15 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

debian
почти 15 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey b ...

github
около 4 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

EPSS

Процентиль: 63%
0.01136
Низкий

4.3 Medium

CVSS2