Oval Definition:oval:com.ubuntu.precise:def:20124193000
Revision Date:2012-10-12Version:1
Title:CVE-2012-4193 on Ubuntu 12.04 LTS (precise) - medium.
Description:Mozilla Firefox before 16.0.1, Firefox ESR 10.x before 10.0.9, Thunderbird before 16.0.1, Thunderbird ESR 10.x before 10.0.9, and SeaMonkey before 2.13.1 omit a security check in the defaultValue function during the unwrapping of security wrappers, which allows remote attackers to bypass the Same Origin Policy and read the properties of a Location object, or execute arbitrary JavaScript code, via a crafted web site.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-4193
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND Package Information
  • NOT While related to the CVE in some way, the 'firefox' package in precise is not affected (note: '16.0+build1-0ubuntu0.12.04.1').
  • OR The 'thunderbird' package in precise was vulnerable but has been fixed (note: '16.0.1+build1-0ubuntu0.12.04.1').
  • BACK