CVE Reference: CVE-2008-5511

NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-5511

Description:
Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allows remote attackers to bypass the same origin policy and conduct cross-site scripting (XSS) attacks via an XBL binding to an "unloaded document."

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/47417

UBUNTU
  http://www.ubuntu.com/usn/usn-701-2
  http://www.ubuntu.com/usn/usn-701-1
  http://www.ubuntulinux.org/support/documentation/usn/usn-690-3
  http://www.ubuntu.com/usn/usn-690-2
  http://www.ubuntulinux.org/support/documentation/usn/usn-690-1

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-258748-1
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-256408-1

ST
  1021418

SAID
  Secunia Advisory: SA33231
  Secunia Advisory: SA33433
  Secunia Advisory: SA33216
  Secunia Advisory: SA33232
  Secunia Advisory: SA33523
  Secunia Advisory: SA33547
  Secunia Advisory: SA33184
  Secunia Advisory: SA33188
  Secunia Advisory: SA33189
  Secunia Advisory: SA33203
  Secunia Advisory: SA33204
  Secunia Advisory: SA33205
  Secunia Advisory: SA33421
  Secunia Advisory: SA33434
  Secunia Advisory: SA34501
  Secunia Advisory: SA35080
  Secunia Advisory: SA33408
  Secunia Advisory: SA33415

REDHAT
  http://www.redhat.com/support/errata/RHSA-2009-0002.html
  http://www.redhat.com/support/errata/RHSA-2008-1037.html
  http://www.redhat.com/support/errata/RHSA-2008-1036.html

OVAL
  http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11881

MISC

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDVSA-2008:244
  http://www.mandriva.com/security/advisories?name=MDVSA-2009:012
  http://www.mandriva.com/security/advisories?name=MDVSA-2008:245

DEBIAN
  http://www.debian.org/security/2009/dsa-1696
  http://www.debian.org/security/2009/dsa-1707
  http://www.debian.org/security/2009/dsa-1704
  http://www.debian.org/security/2009/dsa-1697

CONFIRM
  http://www.mozilla.org/security/announce/2008/mfsa2008-68.html

BID
  32882


Return to the previous page.