LWN.net Logo

Mozilla: frame injection spoofing

Package(s):mozilla firefox CVE #(s):CAN-2004-0718 CAN-2005-1937
Created:August 15, 2005 Updated:September 19, 2005
Description: A vulnerability has been discovered in Mozilla and Mozilla Firefox that allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site. Thunderbird is not affected by this.
Alerts:
Debian-Testing DTSA-14-1 2005-09-13
Fedora-Legacy FLSA:160202 2005-09-14
Debian DSA-810-1 2005-09-13
Debian DSA-777-1 2005-08-17
Debian DSA-775-1 2005-08-15

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds