Oval Definition:oval:com.ubuntu.trusty:def:20141583000
Revision Date:2014-10-15Version:1
Title:CVE-2014-1583 on Ubuntu 14.04 LTS (trusty) - medium.
Description:The Alarm API in Mozilla Firefox before 33.0 and Firefox ESR 31.x before 31.2 does not properly restrict toJSON calls, which allows remote attackers to bypass the Same Origin Policy via crafted API calls that access sensitive information within the JSON data of an alarm.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2014-1583
Platform(s):Ubuntu 14.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 14.04 LTS (trusty) is installed.
  • AND The 'firefox' package in trusty was vulnerable but has been fixed (note: '33.0+build2-0ubuntu0.14.04.1').
  • BACK