Lucene search

K
mozillaMozilla FoundationMFSA2005-32
HistoryMar 22, 2005 - 12:00 a.m.

Drag and drop loading of privileged XUL — Mozilla

2005-03-2200:00:00
Mozilla Foundation
www.mozilla.org
24

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

EPSS

0.139

Percentile

95.7%

A malicious page that could lure a user into dragging something (such as a fake scrollbar) can bypass the restriction on opening privileged XUL. The startup scripts in the XUL will run with enhanced privilege, though the actions taken upon merely opening most XUL are benign. So far no way to run arbitrary code supplied by the attacker has been found, but this could be a stepping-stone to future attacks.

Affected configurations

Vulners
Node
mozillafirefoxRange<1.0.2
OR
mozillamozilla_suiteRange<1.7.7

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

EPSS

0.139

Percentile

95.7%