CVE-2008-0417
Publication date 8 February 2008
Last updated 24 July 2024
Ubuntu priority
CRLF injection vulnerability in Mozilla Firefox before 2.0.0.12 allows remote user-assisted web sites to corrupt the user’s password store via newlines that are not properly handled when the user saves a password.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | 8.10 intrepid | Not in release |
8.04 LTS hardy |
Fixed 2.0.0.12+2nobinonly+2-0ubuntu3
|
|
7.10 gutsy |
Fixed 2.0.0.12+2nobinonly+2-0ubuntu0.7.10
|
|
7.04 feisty |
Fixed 2.0.0.12+1nobinonly+2-0ubuntu0.7.4
|
|
6.10 edgy |
Fixed 2.0.0.12+0nobinonly+2-0ubuntu0.6.10
|
|
6.06 LTS dapper |
Fixed 1.5.dfsg+1.5.0.15~prepatch080202a-0ubuntu1
|
|
iceape | 8.10 intrepid | Not in release |
8.04 LTS hardy | Not in release | |
7.10 gutsy | Ignored end of life, was needs-triage | |
7.04 feisty | Not in release | |
6.10 edgy | Not in release | |
6.06 LTS dapper | Not in release | |
iceweasel | 8.10 intrepid | Not in release |
8.04 LTS hardy | Not in release | |
7.10 gutsy | Not in release | |
7.04 feisty | Not in release | |
6.10 edgy | Not in release | |
6.06 LTS dapper | Not in release | |
seamonkey | 8.10 intrepid |
Fixed 1.1.9+nobinonly-0ubuntu1
|
8.04 LTS hardy |
Fixed 1.1.9+nobinonly-0ubuntu1
|
|
7.10 gutsy | Not in release | |
7.04 feisty | Not in release | |
6.10 edgy | Not in release | |
6.06 LTS dapper | Not in release | |
xulrunner | 8.10 intrepid |
Fixed 1.8.1.13+nobinonly-0ubuntu1
|
8.04 LTS hardy |
Fixed 1.8.1.13+nobinonly-0ubuntu1
|
|
7.10 gutsy |
Fixed 1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.7.10.1
|
|
7.04 feisty | Ignored end of life, was needs-triage | |
6.10 edgy | Ignored end of life, was needs-triage | |
6.06 LTS dapper | Not in release |