CVE-2005-1937

Publication date 14 June 2005

Last updated 24 July 2024


Ubuntu priority

A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site, aka the frame injection spoofing vulnerability, a re-introduction of a vulnerability that was originally identified and addressed by CVE-2004-0718.

Status

Package Ubuntu Release Status
mozilla 7.04 feisty Not in release
6.10 edgy
Fixed 1.7.12-1.1ubuntu2
6.06 LTS dapper
Fixed 1.7.12-1.1ubuntu2

References

Related Ubuntu Security Notices (USN)

    • USN-155-1
    • Mozilla vulnerabilities
    • 27 July 2005
    • USN-149-3
    • Ubuntu 4.10 update for Firefox vulnerabilities
    • 28 July 2005
    • USN-149-1
    • Firefox vulnerabilities
    • 21 July 2005

Other references