CVE-2008-5512

NameCVE-2008-5512
DescriptionMultiple unspecified vulnerabilities in Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allow remote attackers to run arbitrary JavaScript with chrome privileges via unknown vectors in which "page content can pollute XPCNativeWrappers."
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub code/issues, web search, more)
ReferencesDSA-1696-1, DSA-1697-1, DSA-1704-1, DSA-1707-1
NVD severitymedium

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
iceapesourceetch1.0.13~pre080614i-0etch1DSA-1697-1
iceapesource(unstable)1.1.14-1
icedovesourceetch1.5.0.13+1.5.0.15b.dfsg1+prepatch080614i-0etch1DSA-1696-1
icedovesource(unstable)2.0.0.19-1
iceweaselsourceetch2.0.0.19-0etch1DSA-1707-1
iceweaselsource(unstable)3.0.5-1
xulrunnersourceetch1.8.0.15~pre080614i-0etch1DSA-1704-1
xulrunnersource(unstable)1.9.0.5-1

Search for package or bug name: Reporting problems