Oval Definition:oval:org.mitre.oval:def:22112
Revision Date:2014-05-26Version:88
Title:ELSA-2010:0153: thunderbird security update (Moderate)
Description:Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 allow remote attackers to perform cross-origin keystroke capture, and possibly conduct cross-site scripting (XSS) attacks, by using the addEventListener and setTimeout functions in conjunction with a wrapped object.NOTE: this vulnerability exists because of an incomplete fix for CVE-2007-3736.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2009-0689
CVE-2009-1571
CVE-2009-2462
CVE-2009-2463
CVE-2009-2466
CVE-2009-2470
CVE-2009-3072
CVE-2009-3075
CVE-2009-3076
CVE-2009-3077
CVE-2009-3274
CVE-2009-3376
CVE-2009-3380
CVE-2009-3384
CVE-2009-3979
CVE-2010-0159
CVE-2010-0163
CVE-2010-0169
CVE-2010-0171
ELSA-2010:0153-02
Platform(s):Oracle Linux 5
Product(s):thunderbird
Definition Synopsis
  • Oracle Linux 5.x
  • AND thunderbird is earlier than 0:2.0.0.24-2.el5_4
  • BACK