|
|
Mozilla Firefox XPInstall Default Installation File Permission Vulnerability
|
Bugtraq ID:
|
11166
|
|
Class:
|
Design Error
|
|
CVE:
|
CVE-2004-0906
|
|
Remote:
|
No
|
|
Local:
|
Yes
|
|
Published:
|
Sep 13 2004 12:00AM
|
|
Updated:
|
Jul 12 2009 07:06AM
|
|
Credit:
|
Max <spamhole@gmx.at> disclosed this vulnerability.
|
|
Vulnerable:
|
SGI ProPack 3.0
RedHat Linux 9.0 i386
RedHat Linux 7.3 i686
RedHat Linux 7.3 i386
RedHat Linux 7.3
RedHat Fedora Core2
RedHat Fedora Core1
Mozilla Firefox 0.9.3
Mozilla Firefox 0.9.2
Mozilla Firefox 0.9.1
Mozilla Firefox 0.9 rc
Mozilla Firefox 0.9
Mozilla Browser 1.7.6
+
HP HP-UX B.11.23
+
HP HP-UX B.11.23
+
HP HP-UX B.11.22
+
HP HP-UX B.11.22
+
HP HP-UX B.11.11
+
HP HP-UX B.11.11
+
HP HP-UX B.11.11
+
HP HP-UX B.11.11
+
HP HP-UX B.11.00
+
HP HP-UX B.11.00
+
RedHat Desktop 4.0
+
RedHat Desktop 4.0
+
RedHat Enterprise Linux AS 4
+
RedHat Enterprise Linux AS 4
+
RedHat Enterprise Linux ES 4
+
RedHat Enterprise Linux ES 4
+
RedHat Enterprise Linux WS 4
+
RedHat Enterprise Linux WS 4
+
Turbolinux Home
+
Turbolinux Home
+
Turbolinux Turbolinux 10 F...
+
Turbolinux Turbolinux Desktop 10.0
+
Turbolinux Turbolinux Desktop 10.0
+
Turbolinux Turbolinux Server 10.0
+
Turbolinux Turbolinux Server 10.0
Mozilla Browser 1.7.2
Mozilla Browser 1.7.1
Mozilla Browser 1.7 rc3
Mozilla Browser 1.7
Mozilla Browser 1.4.4
+
RedHat Desktop 3.0
+
RedHat Desktop 3.0
+
RedHat Enterprise Linux AS 3
+
RedHat Enterprise Linux AS 3
+
RedHat Enterprise Linux AS 2.1 IA64
+
RedHat Enterprise Linux AS 2.1 IA64
+
RedHat Enterprise Linux AS 2.1
+
RedHat Enterprise Linux AS 2.1
+
RedHat Enterprise Linux ES 3
+
RedHat Enterprise Linux ES 3
+
RedHat Enterprise Linux ES 2.1 IA64
+
RedHat Enterprise Linux ES 2.1 IA64
+
RedHat Enterprise Linux ES 2.1
+
RedHat Enterprise Linux ES 2.1
+
RedHat Enterprise Linux WS 3
+
RedHat Enterprise Linux WS 3
+
RedHat Enterprise Linux WS 2.1 IA64
+
RedHat Enterprise Linux WS 2.1 IA64
+
RedHat Enterprise Linux WS 2.1
+
RedHat Enterprise Linux WS 2.1
+
RedHat Linux Advanced Work Station 2.1
Conectiva Linux 10.0
Conectiva Linux 9.0
|
|
|
|
Not Vulnerable:
|
Mozilla Firefox Preview Release
Mozilla Browser 1.7.3
+
HP HP-UX B.11.23
+
HP HP-UX B.11.22
+
HP HP-UX B.11.22
+
HP HP-UX B.11.11
+
HP HP-UX B.11.11
+
HP HP-UX B.11.11
+
HP HP-UX B.11.11
+
HP HP-UX B.11.00
+
HP HP-UX B.11.00
+
HP Tru64 5.1 B-2 PK4 (BL25)
+
HP Tru64 5.1 B-2 PK4 (BL25)
+
HP Tru64 5.1 B-2 PK4
+
HP Tru64 5.1 B-2 PK4
+
HP Tru64 5.1 B PK4
+
HP Tru64 5.1 B PK4
+
HP Tru64 5.1 A PK6 (BL24)
+
HP Tru64 5.1 A PK6 (BL24)
+
HP Tru64 5.1 A PK6
+
HP Tru64 5.1 A PK6
Mozilla Browser 0.9.2
-
Apple Mac OS 9 9.2.1
-
Apple Mac OS 9 9.2.1
-
Apple Mac OS 9 9.2
-
Apple Mac OS 9 9.2
-
Apple Mac OS 9 9.1
-
Apple Mac OS 9 9.1
-
Apple Mac OS 9 9.0.4
-
Apple Mac OS 9 9.0.4
-
Apple Mac OS 9 9.0
-
Apple Mac OS 9 9.0
-
Apple Mac OS X 10.1.2
-
Apple Mac OS X 10.1.2
-
Apple Mac OS X 10.1.1
-
Apple Mac OS X 10.1.1
-
Apple Mac OS X 10.1
-
Apple Mac OS X 10.1
-
Apple Mac OS X 10.0.4
-
Apple Mac OS X 10.0.4
-
Apple Mac OS X 10.0.3
-
Apple Mac OS X 10.0.3
-
Apple Mac OS X 10.0.2
-
Apple Mac OS X 10.0.2
-
Apple Mac OS X 10.0.1
-
Apple Mac OS X 10.0.1
-
Apple Mac OS X 10.0
-
Apple Mac OS X 10.0
+
Conectiva Linux 8.0
+
Conectiva Linux 7.0
+
Conectiva Linux 7.0
+
Conectiva Linux 6.0
+
Conectiva Linux 6.0
-
Microsoft Windows 95
-
Microsoft Windows 95
-
Microsoft Windows 98
-
Microsoft Windows 98
-
Microsoft Windows ME
-
Microsoft Windows ME
-
Microsoft Windows NT 4.0 SP6a
-
Microsoft Windows NT 4.0 SP6a
-
Microsoft Windows NT 4.0 SP5
-
Microsoft Windows NT 4.0 SP5
-
Microsoft Windows NT 4.0 SP4
-
Microsoft Windows NT 4.0 SP4
-
Microsoft Windows NT 4.0 SP3
-
Microsoft Windows NT 4.0 SP3
-
Microsoft Windows NT 4.0 SP2
-
Microsoft Windows NT 4.0 SP2
-
Microsoft Windows NT 4.0 SP1
-
Microsoft Windows NT 4.0 SP1
-
Microsoft Windows NT 4.0
-
Microsoft Windows NT 4.0
-
Microsoft Windows XP 0
|
|

|