---
title: "CVE-2005-1160\n    | Ubuntu"
description: Ubuntu is an open source software operating system that runs from the
  desktop, to the cloud, to all your internet connected things.
url: https://ubuntu.com/security/CVE-2005-1160?format=md
keywords: index, follow
---

# CVE-2005-1160

Publication date 2 May 2005

Last updated 17 July 2025

---

Ubuntu priority

**Medium**

[Why this priority?](https://ubuntu.com/security/cves/about#priority )

Toggle side navigation

## Description

The privileged "chrome" UI code in Firefox before 1.0.3 and Mozilla Suite
before 1.7.7 allows remote attackers to gain privileges by overriding
certain properties or methods of DOM nodes, as demonstrated using multiple
attacks involving the eval function or the Script object.

## Status

Show unmaintained releases

| Package | Ubuntu Release | Status |
| --- | --- | --- |
| mozilla | 7.10 gutsy | Not in release |
| 7.04 feisty | Not in release |
| 6.10 edgy | Not affected |
| 6.06 LTS dapper | Not affected |
| mozilla-thunderbird | 7.10 gutsy | Not in release |
| 7.04 feisty | Fixed 1.5.0.13-0ubuntu0.7.04 |
| 6.10 edgy | Fixed 1.5.0.13-0ubuntu0.6.10 |
| 6.06 LTS dapper | Fixed 1.5.0.13-0ubuntu0.6.06 |

---

* [How can I get the fixes?](https://ubuntu.com/security/cves/about#security)
* [What do statuses mean?](https://ubuntu.com/security/cves/about#statuses)

## References

* [MITRE](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1160)
* [NVD](https://nvd.nist.gov/vuln/detail/CVE-2005-1160)
* [Launchpad](https://launchpad.net/bugs/cve/CVE-2005-1160)
* [Debian](https://security-tracker.debian.org/tracker/CVE-2005-1160)

### Related Ubuntu Security Notices (USN)

+ [USN-157-1](https://usn.ubuntu.com/USN-157-1)
+ Mozilla Thunderbird vulnerabilities
+ 1 August 2005

+ [USN-124-1](https://usn.ubuntu.com/USN-124-1)
+ Mozilla and Firefox vulnerabilities
+ 11 May 2005

+ [USN-149-3](https://usn.ubuntu.com/USN-149-3)
+ Ubuntu 4.10 update for Firefox vulnerabilities
+ 28 July 2005

### Other references

* <https://www.cve.org/CVERecord?id=CVE-2005-1160>
