Search CVE reports


Toggle filters

2181 – 2190 of 2389 results


CVE-2009-1308

Low priority

Some fixes available 10 of 22

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey allows remote attackers to inject arbitrary web script or HTML via vectors involving XBL JavaScript bindings and...

6 affected packages

firefox, seamonkey, thunderbird, xulrunner, xulrunner-1.9, xulrunner-1.9.1

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
Show less packages

CVE-2009-1307

Medium priority

Some fixes available 21 of 29

The view-source: URI implementation in Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey does not properly implement the Same Origin Policy, which allows remote attackers to (1) bypass crossdomain.xml restrictions and...

7 affected packages

firefox, mozilla-thunderbird, seamonkey, thunderbird, xulrunner...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
mozilla-thunderbird
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
Show all 7 packages Show less packages

CVE-2009-1306

Low priority

Some fixes available 10 of 22

The jar: URI implementation in Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey does not follow the Content-Disposition header of the inner URI, which allows remote attackers to conduct cross-site scripting (XSS) attacks...

6 affected packages

firefox, seamonkey, thunderbird, xulrunner, xulrunner-1.9, xulrunner-1.9.1

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
Show less packages

CVE-2009-1305

Medium priority

Some fixes available 21 of 29

The JavaScript engine in Mozilla Firefox before 3.0.9, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.16 allows remote attackers to cause a denial of service (application crash) and possibly trigger memory corruption via...

7 affected packages

firefox, mozilla-thunderbird, seamonkey, thunderbird, xulrunner...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
mozilla-thunderbird
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
Show all 7 packages Show less packages

CVE-2009-1304

Medium priority

Some fixes available 13 of 20

The JavaScript engine in Mozilla Firefox 3.x before 3.0.9, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.16 allows remote attackers to cause a denial of service (application crash) and possibly trigger memory corruption...

6 affected packages

firefox, seamonkey, thunderbird, xulrunner, xulrunner-1.9, xulrunner-1.9.1

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
Show less packages

CVE-2009-1303

Medium priority

Some fixes available 21 of 28

The browser engine in Mozilla Firefox before 3.0.9, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.16 allows remote attackers to cause a denial of service (application crash) and possibly trigger memory corruption via...

6 affected packages

firefox, seamonkey, thunderbird, xulrunner, xulrunner-1.9, xulrunner-1.9.1

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
Show less packages

CVE-2009-1302

Medium priority

Some fixes available 13 of 20

The browser engine in Mozilla Firefox 3.x before 3.0.9, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.16 allows remote attackers to cause a denial of service (application crash) and possibly trigger memory corruption via...

6 affected packages

firefox, seamonkey, thunderbird, xulrunner, xulrunner-1.9, xulrunner-1.9.1

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
Show less packages

CVE-2009-0773

Low priority

Some fixes available 8 of 10

The JavaScript engine in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey 1.1.15 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) a splice of an array...

12 affected packages

firefox, firefox-3.0, firefox-3.5, iceape, icedove...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
iceape
icedove
iceweasel
mozilla-thunderbird
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
Show all 12 packages Show less packages

CVE-2009-0771

Low priority

Some fixes available 8 of 10

The layout engine in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey 1.1.15 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain vectors that trigger...

12 affected packages

firefox, firefox-3.0, firefox-3.5, iceape, icedove...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
iceape
icedove
iceweasel
mozilla-thunderbird
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
Show all 12 packages Show less packages

CVE-2009-0776

Low priority

Some fixes available 26 of 31

nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.

9 affected packages

firefox, iceape, icedove, mozilla-thunderbird, seamonkey...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
iceape
icedove
mozilla-thunderbird
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
Show all 9 packages Show less packages