CVE-2006-2783

NameCVE-2006-2783
DescriptionMozilla Firefox and Thunderbird before 1.5.0.4 strip the Unicode Byte-order-Mark (BOM) from a UTF-8 page before the page is passed to the parser, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a BOM sequence in the middle of a dangerous tag such as SCRIPT.
SourceCVE (at NVD; oss-sec, fulldisc, OSVDB, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SuSE, Mageia, more)
ReferencesDSA-1118, DSA-1120, DSA-1134-1
NVD severitymedium (attack range: remote)
Debian Bugs535793, 561760
Debian/oldoldstablenot vulnerable.
Debian/oldstablenot vulnerable.
Debian/stablenot vulnerable.
Debian/testingnot vulnerable.
Debian/unstablenot vulnerable.

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
kdelibs (PTS)squeeze4:3.5.10.dfsg.1-5fixed
qt4-x11 (PTS)squeeze4:4.6.3-4+squeeze1fixed
squeeze (lts)4:4.6.3-4+squeeze3fixed
wheezy4:4.8.2+dfsg-11fixed
jessie4:4.8.6+git64-g5dc8b2b+dfsg-3+deb8u1fixed
stretch4:4.8.7+dfsg-1fixed
sid4:4.8.7+dfsg-3fixed
webkit (PTS)squeeze1.2.7-0+squeeze2fixed
squeeze (security)1.2.7-0+squeeze1fixed
wheezy1.8.1-3.4fixed
xulrunner (PTS)wheezy (security), wheezy24.8.1esr-2~deb7u1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
firefoxsource(unstable)1.5.dfsg+1.5.0.4-1medium
kdelibssource(unstable)(not affected)
mozillasource(unstable)2:1.7.13-0.3medium
mozillasourcesarge2:1.7.8-1sarge7.1mediumDSA-1118
mozilla-firefoxsourcesarge1.0.4-2sarge9mediumDSA-1120
mozilla-thunderbirdsourcesarge1.0.2-2.sarge1.0.8amediumDSA-1134-1
qt4-x11source(unstable)4:4.6.2-4low561760
thunderbirdsource(unstable)1.5.0.4-1medium
webkitsource(unstable)1.0.1-1medium535793
xulrunnersource(unstable)1.8.0.4-1medium

Notes

MFSA-2006-42
http://trac.webkit.org/changeset/33380
[lenny] - qt4-x11 <no-dsa> (Minor impact, no apps in Lenny which use qtwebkit )
QT4 might be fixed earlier, but only 4.6.2 was checked against, Lenny is affected
- kdelibs <not-affected> (bug #561765)

Search for package or bug name: Reporting problems