CVE-2005-2260

Publication date 13 July 2005

Last updated 24 July 2024


Ubuntu priority

The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user.

Status

Package Ubuntu Release Status
mozilla 7.04 feisty Not in release
6.10 edgy
Fixed 1.7.12-1.1ubuntu2
6.06 LTS dapper
Fixed 1.7.12-1.1ubuntu2

References

Related Ubuntu Security Notices (USN)

    • USN-155-1
    • Mozilla vulnerabilities
    • 27 July 2005
    • USN-149-3
    • Ubuntu 4.10 update for Firefox vulnerabilities
    • 28 July 2005
    • USN-149-1
    • Firefox vulnerabilities
    • 21 July 2005

Other references