CVE-2011-3656

NameCVE-2011-3656
DescriptionCross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7 allows remote attackers to inject arbitrary web script or HTML via vectors involving HTTP 0.9 errors, non-default ports, and content-sniffing.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
iceweaselsourcesqueeze(unfixed)end-of-life
iceweaselsource(unstable)4.0-1

Notes

[squeeze] - iceweasel <end-of-life> (Iceweasel not supported in Squeeze LTS)

Search for package or bug name: Reporting problems