Oval Definition:oval:com.ubuntu.trusty:def:20150802000
Revision Date:2015-04-01Version:1
Title:CVE-2015-0802 on Ubuntu 14.04 LTS (trusty) - low.
Description:Mozilla Firefox before 37.0 relies on docshell type information instead of page principal information for Window.webidl access control, which might allow remote attackers to execute arbitrary JavaScript code with chrome privileges via certain content navigation that leverages the reachability of a privileged window with an unintended persistence of access to restricted internal methods.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2015-0802
Platform(s):Ubuntu 14.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 14.04 LTS (trusty) is installed.
  • AND The 'firefox' package in trusty was vulnerable but has been fixed (note: '37.0+build2-0ubuntu0.14.04.1').
  • BACK