Oval Definition:oval:org.mitre.oval:def:1514
Revision Date:2009-11-09Version:4
Title:Element position: Style Change Vulnerability
Description:Mozilla Firefox before 1.5.0.1, Thunderbird 1.5 if running Javascript in mail, and SeaMonkey before 1.0 allow remote attackers to execute arbitrary code by changing an element's style from position:relative to position:static, which causes Gecko to operate on freed memory.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2006-0294
Platform(s):Microsoft Windows 2000
Microsoft Windows NT
Microsoft Windows Server 2003
Microsoft Windows XP
Product(s):mozilla
Definition Synopsis
  • Mozilla Firefox version 1.5 is installed and has NOT been patched with version 1.5.0.1
  • Mozilla Firefox version 1.5 is installed
  • AND Firefox version 1.5 or earlier is installed
  • AND NOT The version of Firefox.exe is greater than or equal to 1.8.20060.11112
  • OR A pre-release of SeaMonkey 1.0 is installed
  • A pre-release of SeaMonkey 1.0 is installed
  • AND A pre-release of SeaMonkey 1.0 is installed
  • BACK