CVE-2013-5614
Publication date 11 December 2013
Last updated 24 July 2024
Ubuntu priority
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 do not properly consider the sandbox attribute of an IFRAME element during processing of a contained OBJECT element, which allows remote attackers to bypass intended sandbox restrictions via a crafted web site.
References
Related Ubuntu Security Notices (USN)
- USN-2052-1
- Firefox vulnerabilities
- 11 December 2013