Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Mozilla Space Key XPI Installation Vulnerability

Mozilla is a popular, freely available, open-source web browser. It runs on most Linux and Unix variants, as well as MacOS and Microsoft Windows 9x/ME/NT/2000/XP operating systems.

Due to improper implementation of the onkeypress function for the space bar, it may be possible to use a keypress for multiple confirmations. This could potentially allow the confirmation of a malicious XPI to be installed into the client.







 

Privacy Statement
Copyright 2008, SecurityFocus