Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-3655
HistoryNov 09, 2011 - 12:00 a.m.

CVE-2011-3655

2011-11-0900:00:00
ubuntu.com
ubuntu.com
16

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.006

Percentile

79.5%

Mozilla Firefox 4.x through 7.0 and Thunderbird 5.0 through 7.0 perform
access control without checking for use of the NoWaiverWrapper wrapper,
which allows remote attackers to gain privileges via a crafted web site.

OSVersionArchitecturePackageVersionFilename
ubuntu11.04noarchfirefox<Β 8.0+build1-0ubuntu0.11.04.3UNKNOWN
ubuntu11.10noarchfirefox<Β 8.0+build1-0ubuntu0.11.10.3UNKNOWN
ubuntu11.10noarchthunderbird<Β 8.0+build1-0ubuntu0.11.10.1UNKNOWN

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.006

Percentile

79.5%