CVE-2005-0401
Publication date 2 May 2005
Last updated 24 July 2024
Ubuntu priority
FireFox 1.0.1 and Mozilla before 1.7.6 do not sufficiently address all attack vectors for loading chrome files and hijacking drag and drop events, which allows remote attackers to execute arbitrary XUL code by tricking a user into dragging a scrollbar, a variant of CVE-2005-0527, aka "Firescrolling 2."
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | ||
firefox-granparadiso | ||
lightning-sunbird | ||
midbrowser | ||
mozilla | ||