Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-0777
HistoryMar 05, 2009 - 12:00 a.m.

CVE-2009-0777

2009-03-0500:00:00
ubuntu.com
ubuntu.com
14

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:P/A:P

EPSS

0.006

Percentile

78.8%

Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey
before 1.1.15 decode invisible characters when they are displayed in the
location bar, which causes an incorrect address to be displayed and makes
it easier for remote attackers to spoof URLs and conduct phishing attacks.

OSVersionArchitecturePackageVersionFilename
ubuntu8.04noarchfirefox-3.0< 3.0.7+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu8.10noarchfirefox-3.0< 3.0.7+nobinonly-0ubuntu0.8.10.1UNKNOWN
ubuntu9.04noarchfirefox-3.0< 3.0.7+nobinonly-0ubuntu1UNKNOWN
ubuntu9.04noarchfirefox-3.5< 3.5+nobinonly-0ubuntu0.9.04.1UNKNOWN
ubuntu8.04noarchxulrunner-1.9< 1.9.0.7+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu8.10noarchxulrunner-1.9< 1.9.0.7+nobinonly-0ubuntu0.8.10.1UNKNOWN
ubuntu9.04noarchxulrunner-1.9< 1.9.0.7+nobinonly-0ubuntu1UNKNOWN
ubuntu9.04noarchxulrunner-1.9.1< 1.9.1+nobinonly-0ubuntu0.9.04.1UNKNOWN

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:P/A:P

EPSS

0.006

Percentile

78.8%