~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
PublicDateAtUSN: 2008-12-17
Candidate: CVE-2008-5510
PublicDate: 2008-12-17
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5510
 http://www.ubuntu.com/usn/usn-690-2
 http://www.ubuntu.com/usn/usn-690-1
 http://www.ubuntu.com/usn/usn-701-1
 http://www.ubuntu.com/usn/usn-717-3
Description:
 The CSS parser in Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19,
 Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 ignores
 the '\0' escaped null character, which might allow remote attackers to
 bypass protection mechanisms such as sanitization routines.
Ubuntu-Description:
Notes:
Bugs:
Priority: medium
Discovered-by:
Assigned-to:

Patches_firefox:
upstream_firefox: released (2.0.0.19)
dapper_firefox: released (1.5.dfsg+1.5.0.15~prepatch080614i-0ubuntu1)
gutsy_firefox: released (2.0.0.19+nobinonly1-0ubuntu0.7.10.1)
hardy_firefox: released (2.0.0.19+nobinonly1-0ubuntu0.8.04.1)
intrepid_firefox: DNE
jaunty_firefox: DNE
karmic_firefox: DNE


Patches_firefox-3.0:
upstream_firefox-3.0: released (3.0.5)
dapper_firefox-3.0: DNE
gutsy_firefox-3.0: needed (reached end-of-life)
lucid_firefox: released (3.0.5+nobinonly-0ubuntu0.8.04.1)
maverick_firefox: released (3.0.5+nobinonly-0ubuntu0.8.04.1)
natty_firefox: released (3.0.5+nobinonly-0ubuntu0.8.04.1)
devel_firefox: released (3.0.5+nobinonly-0ubuntu0.8.04.1)
hardy_firefox-3.0: released (3.0.5+nobinonly-0ubuntu0.8.04.1)
intrepid_firefox-3.0: released (3.0.5+nobinonly-0ubuntu0.8.10.1)
jaunty_firefox-3.0: released (3.0.5+nobinonly-0ubuntu1)
karmic_firefox-3.0: DNE
lucid_firefox-3.0: DNE
maverick_firefox-3.0: DNE
natty_firefox-3.0: DNE
devel_firefox-3.0: DNE

Patches_xulrunner:
upstream_xulrunner: needs-triage
dapper_xulrunner: DNE
gutsy_xulrunner: released (1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.7.10.1)
hardy_xulrunner: released (1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.8.04.1)
intrepid_xulrunner: released (1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.8.10.1)
jaunty_xulrunner: ignored (reached end-of-life)
karmic_xulrunner: ignored (reached end-of-life)
lucid_xulrunner: DNE
maverick_xulrunner: DNE
natty_xulrunner: DNE
devel_xulrunner: DNE

Patches_xulrunner-1.9:
upstream_xulrunner-1.9: needs-triage
dapper_xulrunner-1.9: DNE
gutsy_xulrunner-1.9: needed (reached end-of-life)
hardy_xulrunner-1.9: released (1.9.0.5+nobinonly-0ubuntu0.8.04.1)
intrepid_xulrunner-1.9: released (1.9.0.5+nobinonly-0ubuntu0.8.10.1)
jaunty_xulrunner-1.9: released (1.9.0.5+nobinonly-0ubuntu1)
karmic_xulrunner-1.9: DNE
lucid_xulrunner-1.9: DNE
maverick_xulrunner-1.9: DNE
natty_xulrunner-1.9: DNE
devel_xulrunner-1.9: DNE

Patches_seamonkey:
upstream_seamonkey: released (1.1.14)
dapper_seamonkey: DNE
gutsy_seamonkey: DNE
hardy_seamonkey: released (1.1.15+nobinonly-0ubuntu0.8.04.2)
intrepid_seamonkey: released (1.1.15+nobinonly-0ubuntu0.8.10.2)
jaunty_seamonkey: released (1.1.15+nobinonly-0ubuntu2)
karmic_seamonkey: released (1.1.15+nobinonly-0ubuntu2)
lucid_seamonkey: released (1.1.15+nobinonly-0ubuntu2)
maverick_seamonkey: released (1.1.15+nobinonly-0ubuntu2)
natty_seamonkey: released (1.1.15+nobinonly-0ubuntu2)
devel_seamonkey: released (1.1.15+nobinonly-0ubuntu2)

Patches_iceape:
upstream_iceape: released (1.1.14)
dapper_iceape: DNE
gutsy_iceape: needed (reached end-of-life)
hardy_iceape: DNE
intrepid_iceape: DNE
jaunty_iceape: DNE
karmic_iceape: DNE
lucid_iceape: DNE
maverick_iceape: DNE
natty_iceape: DNE
devel_iceape: DNE

Patches_thunderbird:
upstream_thunderbird: released (2.0.0.19)
dapper_thunderbird: DNE
gutsy_thunderbird: released (2.0.0.19+nobinonly-0ubuntu0.7.10.1)
hardy_thunderbird: released (2.0.0.19+nobinonly-0ubuntu0.8.04.1)
intrepid_thunderbird: released (2.0.0.19+nobinonly-0ubuntu0.8.10.1)
jaunty_thunderbird: released (2.0.0.19+nobinonly-0ubuntu1)
karmic_thunderbird: released (2.0.0.19+nobinonly-0ubuntu1)
lucid_thunderbird: released (2.0.0.19+nobinonly-0ubuntu1)
maverick_thunderbird: released (2.0.0.19+nobinonly-0ubuntu1)
natty_thunderbird: released (2.0.0.19+nobinonly-0ubuntu1)
devel_thunderbird: released (2.0.0.19+nobinonly-0ubuntu1)

Patches_mozilla-thunderbird:
upstream_mozilla-thunderbird: needs-triage
dapper_mozilla-thunderbird: released (1.5.0.13+1.5.0.15~prepatch080614i-0ubuntu0.6.06.1)
gutsy_mozilla-thunderbird: DNE
hardy_mozilla-thunderbird: DNE
intrepid_mozilla-thunderbird: DNE
jaunty_mozilla-thunderbird: DNE
karmic_mozilla-thunderbird: DNE
lucid_mozilla-thunderbird: DNE
maverick_mozilla-thunderbird: DNE
natty_mozilla-thunderbird: DNE
devel_mozilla-thunderbird: DNE