Описание
The DOMParser component in Mozilla Firefox before 15.0, Thunderbird before 15.0, and SeaMonkey before 2.12 loads subresources during parsing of text/html data within an extension, which allows remote attackers to obtain sensitive information by providing crafted data to privileged extension code.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 15.0+build1-0ubuntu1 |
| hardy | ignored | end of life |
| lucid | released | 15.0+build1-0ubuntu0.10.04.1 |
| natty | released | 15.0+build1-0ubuntu0.11.04.2 |
| oneiric | released | 15.0+build1-0ubuntu0.11.10.1 |
| precise | released | 15.0+build1-0ubuntu0.12.04.1 |
| quantal | released | 15.0+build1-0ubuntu1 |
| raring | released | 15.0+build1-0ubuntu1 |
| saucy | released | 15.0+build1-0ubuntu1 |
| upstream | released | 15.0 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | ignored | end of life |
| lucid | ignored | end of life |
| natty | ignored | end of life |
| oneiric | ignored | end of life |
| precise | DNE | |
| quantal | DNE | |
| raring | DNE | |
| saucy | DNE | |
| upstream | needs-triage |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 15.0+build1-0ubuntu1 |
| hardy | ignored | end of life |
| lucid | released | 15.0+build1-0ubuntu0.10.04.1 |
| natty | released | 15.0+build1-0ubuntu0.11.04.1 |
| oneiric | released | 15.0+build1-0ubuntu0.11.10.1 |
| precise | released | 15.0+build1-0ubuntu0.12.04.1 |
| quantal | released | 15.0+build1-0ubuntu1 |
| raring | released | 15.0+build1-0ubuntu1 |
| saucy | released | 15.0+build1-0ubuntu1 |
| upstream | released | 15.0 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | ignored | end of life |
| lucid | ignored | end of life |
| natty | ignored | end of life |
| oneiric | DNE | |
| precise | DNE | |
| quantal | DNE | |
| raring | DNE | |
| saucy | DNE | |
| upstream | needs-triage |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | DNE | |
| lucid | DNE | |
| natty | ignored | end of life |
| oneiric | DNE | |
| precise | DNE | |
| quantal | DNE | |
| raring | DNE | |
| saucy | DNE | |
| upstream | needs-triage |
Показывать по
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
The DOMParser component in Mozilla Firefox before 15.0, Thunderbird before 15.0, and SeaMonkey before 2.12 loads subresources during parsing of text/html data within an extension, which allows remote attackers to obtain sensitive information by providing crafted data to privileged extension code.
The DOMParser component in Mozilla Firefox before 15.0, Thunderbird before 15.0, and SeaMonkey before 2.12 loads subresources during parsing of text/html data within an extension, which allows remote attackers to obtain sensitive information by providing crafted data to privileged extension code.
The DOMParser component in Mozilla Firefox before 15.0, Thunderbird be ...
The DOMParser component in Mozilla Firefox before 15.0, Thunderbird before 15.0, and SeaMonkey before 2.12 loads subresources during parsing of text/html data within an extension, which allows remote attackers to obtain sensitive information by providing crafted data to privileged extension code.
EPSS
4.3 Medium
CVSS2