1
PublicDateAtUSN: 2008-07-08
3
Candidate: CVE-2008-2809
5
https://usn.ubuntu.com/usn/usn-619-1
6
https://usn.ubuntu.com/usn/usn-629-1
7
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2809
9
Mozilla 1.9 M8 and earlier, Mozilla Firefox 2 before 2.0.0.15, SeaMonkey
10
1.1.5 and other versions before 1.1.10, Netscape 9.0, and other
11
Mozilla-based web browsers, when a user accepts an SSL server certificate
12
on the basis of the CN domain name in the DN field, regard the certificate
13
as also accepted for all domain names in subjectAltName:dNSName fields,
14
which makes it easier for remote attackers to trick a user into accepting
15
an invalid certificate for a spoofed web site.
24
upstream_firefox: released (2.0.0.15)
25
dapper_firefox: released (1.5.dfsg+1.5.0.15~prepatch080614c-0ubuntu1)
26
feisty_firefox: released (2.0.0.15+0nobinonly-0ubuntu0.7.4 )
27
gutsy_firefox: released (2.0.0.15+1nobinonly-0ubuntu0.7.10)
28
hardy_firefox: released (2.0.0.15+1nobinonly-0ubuntu0.8.04.2)
35
upstream_firefox-3.0: needs-triage
36
dapper_firefox-3.0: DNE
37
feisty_firefox-3.0: DNE
38
gutsy_firefox-3.0: needed (reached end-of-life)
39
lucid_firefox: not-affected (3.0+nobinonly-0ubuntu0.8.04.1)
40
maverick_firefox: not-affected (3.0+nobinonly-0ubuntu0.8.04.1)
41
natty_firefox: not-affected (3.0+nobinonly-0ubuntu0.8.04.1)
42
devel_firefox: not-affected (3.0+nobinonly-0ubuntu0.8.04.1)
43
hardy_firefox-3.0: not-affected (3.0+nobinonly-0ubuntu0.8.04.1)
44
intrepid_firefox-3.0: not-affected (3.0+nobinonly-0ubuntu2)
45
jaunty_firefox-3.0: not-affected (3.0+nobinonly-0ubuntu2)
46
karmic_firefox-3.0: DNE
47
lucid_firefox-3.0: DNE
48
maverick_firefox-3.0: DNE
49
natty_firefox-3.0: DNE
50
devel_firefox-3.0: DNE
53
upstream_thunderbird: released (2.0.0.16)
54
dapper_thunderbird: DNE
55
feisty_thunderbird: DNE
56
gutsy_thunderbird: released (2.0.0.16+nobinonly-0ubuntu0.7.10.1)
57
hardy_thunderbird: released (2.0.0.16+nobinonly-0ubuntu0.8.04.1)
58
intrepid_thunderbird: released (2.0.0.16+nobinonly-0ubuntu1)
59
jaunty_thunderbird: released (2.0.0.16+nobinonly-0ubuntu1)
60
karmic_thunderbird: released (2.0.0.16+nobinonly-0ubuntu1)
61
lucid_thunderbird: released (2.0.0.16+nobinonly-0ubuntu1)
62
maverick_thunderbird: released (2.0.0.16+nobinonly-0ubuntu1)
63
natty_thunderbird: released (2.0.0.16+nobinonly-0ubuntu1)
64
devel_thunderbird: released (2.0.0.16+nobinonly-0ubuntu1)
66
Patches_mozilla-thunderbird:
67
upstream_mozilla-thunderbird: needs-triage
68
dapper_mozilla-thunderbird: released (1.5.0.13+1.5.0.15~prepatch080614d-0ubuntu0.6.06.1)
69
feisty_mozilla-thunderbird: released (1.5.0.13+1.5.0.15~prepatch080614d-0ubuntu0.7.04.1)
70
gutsy_mozilla-thunderbird: DNE
71
hardy_mozilla-thunderbird: DNE
72
intrepid_mozilla-thunderbird: DNE
73
jaunty_mozilla-thunderbird: DNE
74
karmic_mozilla-thunderbird: DNE
75
lucid_mozilla-thunderbird: DNE
76
maverick_mozilla-thunderbird: DNE
77
natty_mozilla-thunderbird: DNE
78
devel_mozilla-thunderbird: DNE
81
upstream_xulrunner: needs-triage
83
feisty_xulrunner: needed (reached end-of-life)
84
gutsy_xulrunner: released (1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.7.10.1)
85
hardy_xulrunner: released (1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.8.04.1)
86
intrepid_xulrunner: released (1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.8.10.1)
87
jaunty_xulrunner: ignored (reached end-of-life)
88
karmic_xulrunner: ignored (reached end-of-life)
90
maverick_xulrunner: DNE
95
upstream_iceape: needs-triage
98
gutsy_iceape: needed (reached end-of-life)
109
upstream_icedove: released (2.0.0.15)
114
intrepid_icedove: DNE
118
maverick_icedove: DNE
123
upstream_iceweasel: released (2.0.0.15)
124
dapper_iceweasel: DNE
125
feisty_iceweasel: DNE
128
intrepid_iceweasel: DNE
129
jaunty_iceweasel: DNE
130
karmic_iceweasel: DNE
132
maverick_iceweasel: DNE
137
upstream_seamonkey: released (1.1.10)
138
dapper_seamonkey: DNE
139
feisty_seamonkey: DNE
141
hardy_seamonkey: released (1.1.12+nobinonly-0ubuntu0.8.04.1)
142
intrepid_seamonkey: released (1.1.11+nobinonly-0ubuntu1)
143
jaunty_seamonkey: released (1.1.11+nobinonly-0ubuntu1)
144
karmic_seamonkey: released (1.1.11+nobinonly-0ubuntu1)
145
lucid_seamonkey: released (1.1.11+nobinonly-0ubuntu1)
146
maverick_seamonkey: released (1.1.11+nobinonly-0ubuntu1)
147
natty_seamonkey: released (1.1.11+nobinonly-0ubuntu1)
148
devel_seamonkey: released (1.1.11+nobinonly-0ubuntu1)