CVE-2005-1532
N/A
N/A
Summary
Firefox before 1.0.4 and Mozilla Suite before 1.7.8 do not properly limit privileges of Javascript eval and Script objects in the calling context, which allows remote attackers to conduct unauthorized activities via "non-DOM property overrides," a variant of CVE-2005-1160.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.mozilla.org/security/announce/mfsa2005-44.html
- ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.49/SCOSA-2005.49.txt
- http://www.redhat.com/support/errata/RHSA-2005-435.html
- http://secunia.com/advisories/19823
- http://securitytracker.com/id?1013964
- http://www.securityfocus.com/bid/15495
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A100014
- http://www.redhat.com/support/errata/RHSA-2005-601.html
- http://securitytracker.com/id?1013965
- http://www.securityfocus.com/bid/13645
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10791
- http://www.vupen.com/english/advisories/2005/0530
- http://www.novell.com/linux/security/advisories/2006_04_25.html
- http://www.redhat.com/support/errata/RHSA-2005-434.html
References
- http://www.mozilla.org/security/announce/mfsa2005-44.html
- ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.49/SCOSA-2005.49.txt
- http://www.redhat.com/support/errata/RHSA-2005-435.html
- http://secunia.com/advisories/19823
- http://securitytracker.com/id?1013964
- http://www.securityfocus.com/bid/15495
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A100014
- http://www.redhat.com/support/errata/RHSA-2005-601.html
- http://securitytracker.com/id?1013965
- http://www.securityfocus.com/bid/13645
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10791
- http://www.vupen.com/english/advisories/2005/0530
- http://www.novell.com/linux/security/advisories/2006_04_25.html
- http://www.redhat.com/support/errata/RHSA-2005-434.html
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.