Oval Definition:
oval:org.mitre.oval:def:100037
Revision Date
:
2007-05-09
Version
:
5
Title
:
Mozilla Double Download .lnk Vulnerability
Description
:
Firefox before 1.0.1 and Mozilla before 1.7.6 allows remote malicious web sites to overwrite arbitrary files by tricking the user into downloading a .LNK (link) file twice, which overwrites the file that was referenced in the first .LNK file.
Family
:
windows
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2005-0587
Platform(s)
:
Microsoft Windows 2000
Microsoft Windows NT
Microsoft Windows Server 2003
Microsoft Windows XP
Product(s)
:
mozilla
Mozilla Firefox
Mozilla Thunderbird
Definition Synopsis
Mozilla Firefox version 1.0 or earlier is installed
Firefox version 1.0 or earlier is installed
AND
Mozilla Firefox version 1.0 or earlier is installed
OR
Mozilla Thunderbird version 1.0 or earlier is installed
Mozilla Thunderbird version 1.0 or earlier is installed
AND
Mozilla Thunderbird version 1.0 or earlier is installed
OR
Mozilla Suite version 1.7.5 or earlier is installed
Mozilla Suite version 1.7.5 or earlier is installed
AND
Mozilla Suite version 1.7.5 or earlier is installed
BACK