LWN.net Logo

firefox: multiple vulnerabilities

Package(s):firefox CVE #(s):CVE-2008-5510 CVE-2009-0357
Created:February 11, 2009 Updated:February 16, 2009
Description: Firefox 1.5 (and later) suffers from a pair of vulnerabilities. CVE-2008-5510: escaped null characters are not properly handled, allowing script sanitizing processes to be bypassed. CVE-2009-0357: access to cookies is not properly restricted, creating an information disclosure vulnerability.
Alerts:
SuSE SUSE-SA:2009:009 2009-02-16
Ubuntu USN-717-1 2009-02-10
Ubuntu USN-717-3 2009-02-11
Ubuntu USN-717-2 2009-02-10
Gentoo 201301-01 2013-01-07

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds