CVE-2015-0810

Publication date 1 April 2015

Last updated 24 July 2024


Ubuntu priority

Description

Mozilla Firefox before 37.0 on OS X does not ensure that the cursor is visible, which allows remote attackers to conduct clickjacking attacks via a Flash object in conjunction with DIV elements associated with layered presentation, and crafted JavaScript code that interacts with an IMG element.

Read the notes from the security team

Status

Package Ubuntu Release Status
firefox 14.10 utopic
Not affected
14.04 LTS trusty Not in release
12.04 LTS precise
Not affected
10.04 LTS lucid Ignored end of life

Notes


chrisccoulson

OS X only