|
|
Mozilla Firefox XBL -MOZ-BINDING Property Cross-Domain Scripting Vulnerability
|
Bugtraq ID:
|
16427
|
|
Class:
|
Origin Validation Error
|
|
CVE:
|
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Jan 30 2006 12:00AM
|
|
Updated:
|
Feb 07 2006 08:54PM
|
|
Credit:
|
Reported by Chris Thomas (CTho) <cst@andrew.cmu.edu>.
|
|
Vulnerable:
|
Mozilla Firefox 1.5 beta 2
Mozilla Firefox 1.5 beta 1
Mozilla Firefox 1.5
Mozilla Firefox 1.0.7
Mozilla Firefox 1.0.6
Mozilla Firefox 1.0.5
Mozilla Firefox 1.0.5
Mozilla Firefox 1.0.4
Mozilla Firefox 1.0.3
+
Gentoo Linux
Mozilla Firefox 1.0.2
+
MandrakeSoft Linux Mandrake 10.2 x86_64
+
MandrakeSoft Linux Mandrake 10.2
+
MandrakeSoft Linux Mandrake 10.2
+
RedHat Desktop 4.0
+
RedHat Desktop 4.0
+
RedHat Enterprise Linux AS 4
+
RedHat Enterprise Linux AS 4
+
RedHat Enterprise Linux ES 4
+
RedHat Enterprise Linux ES 4
+
RedHat Enterprise Linux WS 4
+
RedHat Enterprise Linux WS 4
Mozilla Firefox 1.0.1
+
RedHat Fedora Core3
Mozilla Firefox 1.0
+
Gentoo Linux
+
Gentoo Linux
+
S.u.S.E. Linux Personal 9.2 x86_64
+
S.u.S.E. Linux Personal 9.2 x86_64
+
S.u.S.E. Linux Personal 9.2
+
S.u.S.E. Linux Personal 9.2
+
S.u.S.E. Linux Personal 9.1 x86_64
+
S.u.S.E. Linux Personal 9.1 x86_64
+
S.u.S.E. Linux Personal 9.1
+
S.u.S.E. Linux Personal 9.1
+
S.u.S.E. Linux Personal 9.0 x86_64
+
S.u.S.E. Linux Personal 9.0 x86_64
+
S.u.S.E. Linux Personal 9.0
+
S.u.S.E. Linux Personal 9.0
+
Slackware Linux 10.1
+
Slackware Linux 10.0
+
Slackware Linux 10.0
+
Slackware Linux 9.1
+
Slackware Linux 9.1
+
Slackware Linux -current
+
Slackware Linux -current
|
|
|
|
Not Vulnerable:
|
|
|

|