Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-3004

Опубликовано: 29 сент. 2011
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3

Описание

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

РелизСтатусПримечание
devel

released

7.0.1+build1+nobinonly-0ubuntu1
hardy

ignored

end of life
lucid

not-affected

maverick

not-affected

3.6.23+build1+nobinonly-0ubuntu0.10.10.1
natty

released

7.0.1+build1+nobinonly-0ubuntu0.11.04.1
upstream

released

7.0

Показывать по

4.3 Medium

CVSS2

Связанные уязвимости

redhat
около 14 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

nvd
больше 14 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

debian
больше 14 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey b ...

github
больше 3 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

4.3 Medium

CVSS2