|
|
Subscribe / Log in / New account

mozilla: cross-site scripting

Package(s):iceape, thunderbird, seamonkey, firefox CVE #(s):CVE-2013-0751
Created:January 15, 2013 Updated:February 18, 2013
Description: From the CVE entry:

Mozilla Firefox before 18.0 on Android and SeaMonkey before 2.15 do not restrict a touch event to a single IFRAME element, which allows remote attackers to obtain sensitive information or possibly conduct cross-site scripting (XSS) attacks via a crafted HTML document.

Alerts:
Gentoo 201309-23 firefox 2013-09-27
SUSE SUSE-SU-2013:0306-1 Mozilla Firefox 2013-02-18
SUSE SUSE-SU-2013:0292-1 MozillaFirefox 2013-02-13
SUSE SUSE-SU-2013:0049-1 MozillaFirefox 2013-01-18
SUSE SUSE-SU-2013:0048-1 MozillaFirefox 2013-01-18
Mageia MGASA-2013-0008 iceape 2013-01-14
openSUSE openSUSE-SU-2013:0131-1 Mozilla 2013-01-23
openSUSE openSUSE-SU-2013:0149-1 Mozilla 2013-01-23

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds