CVE-2007-1116

Publication date 26 February 2007

Last updated 17 July 2025


Ubuntu priority

Description

The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to obtain sensitive information by querying the browser's session history.

Status

Package Ubuntu Release Status
xulrunner 8.04 LTS hardy
Fixed 1.8.1.4-2ubuntu3
7.10 gutsy
Fixed 1.8.1.4-2ubuntu3
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Not in release


Access our resources on patching vulnerabilities