CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
Percentile
88.1%
The garbage-collection implementation in Mozilla Firefox before 3.0.11,
Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 sets an element’s
owner document to null in unspecified circumstances, which allows remote
attackers to execute arbitrary JavaScript with chrome privileges via a
crafted event handler, related to an incorrect context for this event
handler.
Author | Note |
---|---|
jdstrand | CVEs in Firefox are tracked in the xulrunner source packages. The mapping of xulrunner sources to firefox is: xulrunner (1.8.0): firefox (1.5) - Ubuntu 6.06 LTS xulrunner (1.8.1): firefox (2.0) - Ubuntu 6.10 - 8.04 LTS xulrunner-1.9: firefox-3.0 xulrunner-1.9.1: firefox-3.5 Ubuntu 6.06 LTS and 10.04 LTS uses the embedded xulrunner and not the system xulrunner-1.9.2, so it is tracked in the firefox source package. |
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
ubuntu | 8.04 | noarch | seamonkey | < 1.1.17+nobinonly-0ubuntu0.8.04.1 | UNKNOWN |
ubuntu | 8.10 | noarch | seamonkey | < 1.1.17+nobinonly-0ubuntu0.8.10.1 | UNKNOWN |
ubuntu | 9.04 | noarch | seamonkey | < 1.1.17+nobinonly-0ubuntu0.9.04.1 | UNKNOWN |
ubuntu | 9.10 | noarch | seamonkey | < 1.1.17+nobinonly-0ubuntu1 | UNKNOWN |
ubuntu | 10.04 | noarch | seamonkey | < 1.1.17+nobinonly-0ubuntu1 | UNKNOWN |
ubuntu | 10.10 | noarch | seamonkey | < 1.1.17+nobinonly-0ubuntu1 | UNKNOWN |
ubuntu | 11.04 | noarch | seamonkey | < 1.1.17+nobinonly-0ubuntu1 | UNKNOWN |
ubuntu | 11.10 | noarch | seamonkey | < 1.1.17+nobinonly-0ubuntu1 | UNKNOWN |
ubuntu | 8.04 | noarch | thunderbird | < 2.0.0.22+build1+nobinonly-0ubuntu0.8.04.1 | UNKNOWN |
ubuntu | 8.10 | noarch | thunderbird | < 2.0.0.22+build1+nobinonly-0ubuntu0.8.10.1 | UNKNOWN |