1
PublicDateAtUSN: 2008-09-24
2
Candidate: CVE-2008-4066
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4066
6
https://usn.ubuntu.com/usn/usn-645-1
7
https://usn.ubuntu.com/usn/usn-645-2
8
https://usn.ubuntu.com/usn/usn-647-1
10
Mozilla Firefox 2.0.0.14, and other versions before 2.0.0.17, allows remote
11
attackers to bypass cross-site scripting (XSS) protection mechanisms and
12
conduct XSS attacks via HTML-escaped low surrogate characters that are
13
ignored by the HTML parser, as demonstrated by a "jav�ascript"
14
sequence, aka "HTML escaped low surrogates bug."
23
upstream_firefox: released (2.0.0.17)
24
dapper_firefox: released (1.5.dfsg+1.5.0.15~prepatch080614e-0ubuntu3)
25
feisty_firefox: released (2.0.0.17+0nobinonly-0ubuntu0.7.4)
26
gutsy_firefox: released (2.0.0.17+1nobinonly-0ubuntu0.7.10)
27
hardy_firefox: released (2.0.0.17+1nobinonly-0ubuntu0.8.04.1)
34
upstream_firefox-3.0: released (3.0.3)
35
dapper_firefox-3.0: DNE
36
feisty_firefox-3.0: DNE
37
gutsy_firefox-3.0: needed (reached end-of-life)
38
lucid_firefox: released (3.0.3+build1+nobinonly-0ubuntu0.8.04.1)
39
maverick_firefox: released (3.0.3+build1+nobinonly-0ubuntu0.8.04.1)
40
natty_firefox: released (3.0.3+build1+nobinonly-0ubuntu0.8.04.1)
41
devel_firefox: released (3.0.3+build1+nobinonly-0ubuntu0.8.04.1)
42
hardy_firefox-3.0: released (3.0.3+build1+nobinonly-0ubuntu0.8.04.1)
43
intrepid_firefox-3.0: released (3.0.3+build1+nobinonly-0ubuntu1)
44
jaunty_firefox-3.0: released (3.0.3+build1+nobinonly-0ubuntu1)
45
karmic_firefox-3.0: DNE
46
lucid_firefox-3.0: DNE
47
maverick_firefox-3.0: DNE
48
natty_firefox-3.0: DNE
49
devel_firefox-3.0: DNE
53
upstream_xulrunner: needs-triage
55
feisty_xulrunner: needed (reached end-of-life)
56
gutsy_xulrunner: released (1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.7.10.1)
57
hardy_xulrunner: released (1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.8.04.1)
58
intrepid_xulrunner: released (1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.8.10.1)
59
jaunty_xulrunner: ignored (reached end-of-life)
60
karmic_xulrunner: ignored (reached end-of-life)
62
maverick_xulrunner: DNE
66
Patches_xulrunner-1.9:
67
upstream_xulrunner-1.9: released (1.9.0.3)
68
dapper_xulrunner-1.9: DNE
69
feisty_xulrunner-1.9: DNE
70
gutsy_xulrunner-1.9: needed (reached end-of-life)
71
hardy_xulrunner-1.9: released (1.9.0.3+build1+nobinonly-0ubuntu0.8.04.1)
72
intrepid_xulrunner-1.9: released (1.9.0.3+build1+nobinonly-0ubuntu2)
73
jaunty_xulrunner-1.9: released (1.9.0.3+build1+nobinonly-0ubuntu2)
74
karmic_xulrunner-1.9: DNE
75
lucid_xulrunner-1.9: DNE
76
maverick_xulrunner-1.9: DNE
77
natty_xulrunner-1.9: DNE
78
devel_xulrunner-1.9: DNE
82
upstream_seamonkey: released (1.1.12)
86
hardy_seamonkey: released (1.1.12+nobinonly-0ubuntu0.8.04.1)
87
intrepid_seamonkey: released (1.1.12+nobinonly-0ubuntu1)
88
jaunty_seamonkey: released (1.1.12+nobinonly-0ubuntu1)
89
karmic_seamonkey: released (1.1.12+nobinonly-0ubuntu1)
90
lucid_seamonkey: released (1.1.12+nobinonly-0ubuntu1)
91
maverick_seamonkey: released (1.1.12+nobinonly-0ubuntu1)
92
natty_seamonkey: released (1.1.12+nobinonly-0ubuntu1)
93
devel_seamonkey: released (1.1.12+nobinonly-0ubuntu1)
96
upstream_iceape: needs-triage
99
gutsy_iceape: needed (reached end-of-life)
111
upstream_thunderbird: released (2.0.0.17)
112
dapper_thunderbird: DNE
113
feisty_thunderbird: DNE
114
gutsy_thunderbird: released (2.0.0.17+nobinonly-0ubuntu0.7.10.1)
115
hardy_thunderbird: released (2.0.0.17+nobinonly-0ubuntu0.8.04.1)
116
intrepid_thunderbird: released (2.0.0.17+nobinonly-0ubuntu1)
117
jaunty_thunderbird: released (2.0.0.17+nobinonly-0ubuntu1)
118
karmic_thunderbird: released (2.0.0.17+nobinonly-0ubuntu1)
119
lucid_thunderbird: released (2.0.0.17+nobinonly-0ubuntu1)
120
maverick_thunderbird: released (2.0.0.17+nobinonly-0ubuntu1)
121
natty_thunderbird: released (2.0.0.17+nobinonly-0ubuntu1)
122
devel_thunderbird: released (2.0.0.17+nobinonly-0ubuntu1)
124
Patches_mozilla-thunderbird:
125
Priority_mozilla-thunderbird: low
126
upstream_mozilla-thunderbird: needs-triage
127
dapper_mozilla-thunderbird: released (1.5.0.13+1.5.0.15~prepatch080614g-0ubuntu0.6.06.1)
128
feisty_mozilla-thunderbird: released (1.5.0.13+1.5.0.15~prepatch080614g-0ubuntu0.7.04.1)
129
gutsy_mozilla-thunderbird: DNE
130
hardy_mozilla-thunderbird: DNE
131
intrepid_mozilla-thunderbird: DNE
132
jaunty_mozilla-thunderbird: DNE
133
karmic_mozilla-thunderbird: DNE
134
lucid_mozilla-thunderbird: DNE
135
maverick_mozilla-thunderbird: DNE
136
natty_mozilla-thunderbird: DNE
137
devel_mozilla-thunderbird: DNE