~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
PublicDate: 2005-07-13
Candidate: CVE-2005-2263
References:
 http://www.ubuntu.com/usn/usn-155-1
 http://www.ubuntu.com/usn/usn-149-3
 http://www.ubuntu.com/usn/usn-149-1
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2263
Description:
 The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla
 before 1.7.9 allows remote attackers to execute a callback function in the
 context of another domain by forcing a page navigation after the install
 method has been called, which causes the callback to be run in the context
 of the new page and results in a same origin violation.
Ubuntu-Description:
Notes:
Bugs:
dapper_mozilla: released (1.7.12-1.1ubuntu2)
edgy_mozilla: released (1.7.12-1.1ubuntu2)
feisty_mozilla: DNE
devel_mozilla: DNE
upstream_mozilla: