Search CVE reports


Toggle filters

2861 – 2870 of 3080 results


CVE-2008-0593

Low priority

Some fixes available 8 of 11

Gecko-based browsers, including Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8, modify the .href property of stylesheet DOM nodes to the final URI of a 302 redirect, which might allow remote attackers to bypass the...

5 affected packages

firefox, iceape, iceweasel, seamonkey, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
iceape
iceweasel
seamonkey
xulrunner
Show less packages

CVE-2008-0592

Low priority

Some fixes available 8 of 11

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows user-assisted remote attackers to cause a denial of service via a plain .txt file with a "Content-Disposition: attachment" and an invalid "Content-Type:...

5 affected packages

firefox, iceape, iceweasel, seamonkey, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
iceape
iceweasel
seamonkey
xulrunner
Show less packages

CVE-2008-0591

Low priority

Some fixes available 16 of 19

Mozilla Firefox before 2.0.0.12 and Thunderbird before 2.0.0.12 does not properly manage a delay timer used in confirmation dialogs, which might allow remote attackers to trick users into confirming an unsafe action, such as...

8 affected packages

iceape, firefox, icedove, iceweasel, mozilla-thunderbird...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
iceape
firefox
icedove
iceweasel
mozilla-thunderbird
seamonkey
thunderbird
xulrunner
Show all 8 packages Show less packages

CVE-2008-0419

Low priority

Some fixes available 8 of 11

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows remote attackers to steal navigation history and cause a denial of service (crash) via images in a page that uses designMode frames, which triggers...

5 affected packages

firefox, iceape, iceweasel, seamonkey, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
iceape
iceweasel
seamonkey
xulrunner
Show less packages

CVE-2008-0418

Low priority

Some fixes available 14 of 17

Directory traversal vulnerability in Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8, when using "flat" addons, allows remote attackers to read arbitrary Javascript, image, and stylesheet...

8 affected packages

firefox, iceape, icedove, iceweasel, mozilla-thunderbird...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
iceape
icedove
iceweasel
mozilla-thunderbird
seamonkey
thunderbird
xulrunner
Show all 8 packages Show less packages

CVE-2008-0417

Low priority

Some fixes available 10 of 13

CRLF injection vulnerability in Mozilla Firefox before 2.0.0.12 allows remote user-assisted web sites to corrupt the user's password store via newlines that are not properly handled when the user saves a password.

5 affected packages

iceape, firefox, iceweasel, seamonkey, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
iceape
firefox
iceweasel
seamonkey
xulrunner
Show less packages

CVE-2008-0415

Low priority

Some fixes available 14 of 17

Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8 allows remote attackers to execute script outside of the sandbox and conduct cross-site scripting (XSS) attacks via multiple...

8 affected packages

firefox, iceape, icedove, iceweasel, mozilla-thunderbird...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
iceape
icedove
iceweasel
mozilla-thunderbird
seamonkey
thunderbird
xulrunner
Show all 8 packages Show less packages

CVE-2008-0414

Low priority

Some fixes available 8 of 11

Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows user-assisted remote attackers to trick the user into uploading arbitrary files via label tags that shift focus to a file input field, aka "focus spoofing."

5 affected packages

firefox, iceape, iceweasel, seamonkey, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
iceape
iceweasel
seamonkey
xulrunner
Show less packages

CVE-2008-0413

Medium priority

Some fixes available 14 of 17

The JavaScript engine in Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8 allows remote attackers to cause a denial of service (crash) and possibly trigger memory corruption via (1) a large...

8 affected packages

firefox, iceape, icedove, iceweasel, mozilla-thunderbird...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
iceape
icedove
iceweasel
mozilla-thunderbird
seamonkey
thunderbird
xulrunner
Show all 8 packages Show less packages

CVE-2008-0412

Medium priority

Some fixes available 14 of 17

The browser engine in Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8 allows remote attackers to cause a denial of service (crash) and possibly trigger memory corruption via vectors related...

8 affected packages

firefox, iceape, icedove, iceweasel, mozilla-thunderbird...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
iceape
icedove
iceweasel
mozilla-thunderbird
seamonkey
thunderbird
xulrunner
Show all 8 packages Show less packages