CVE-2005-1531
Publication date 12 May 2005
Last updated 24 July 2024
Ubuntu priority
Firefox before 1.0.4 and Mozilla Suite before 1.7.8 does not properly implement certain security checks for script injection, which allows remote attackers to execute script via "Wrapped" javascript: URLs, as demonstrated using (1) a javascript: URL in a view-source: URL, (2) a javascript: URL in a jar: URL, or (3) "a nested variant."
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | ||
firefox-granparadiso | ||
lightning-sunbird | ||
midbrowser | ||
mozilla | ||