Mozilla Firefox/SeaMonkey/Thunderbird CVE-2012-0458 Security Bypass Vulnerability

Mozilla Firefox, SeaMonkey, and Thunderbird are prone to a security-bypass vulnerability.

An attacker can exploit this issue to bypass certain security restrictions and load a script URL in the privileged 'about:sessionrestore' context.

The issue is fixed in:

Firefox 11.0
Firefox ESR 10.0.3
Firefox 3.6.28
Thunderbird 11.0
Thunderbird ESR 10.0.3
Thunderbird 3.1.20
SeaMonkey 2.8


 

Privacy Statement
Copyright 2010, SecurityFocus