Oval Definition:oval:org.mitre.oval:def:24179
Revision Date:2014-05-26Version:45
Title:ELSA-2013:1268: firefox security update (Critical)
Description:Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not properly identify the "this" object during use of user-defined getter methods on DOM proxies, which might allow remote attackers to bypass intended access restrictions via vectors involving an expando object.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2013-1718
CVE-2013-1722
CVE-2013-1725
CVE-2013-1730
CVE-2013-1732
CVE-2013-1735
CVE-2013-1736
CVE-2013-1737
ELSA-2013:1268-00
Platform(s):Oracle Linux 5
Oracle Linux 6
Product(s):firefox
xulrunner
Definition Synopsis
  • rpm test
  • Oracle Linux 6.x
  • AND rpm test
  • xulrunner is earlier than 0:17.0.9-1.el6_4
  • OR xulrunner-devel is earlier than 0:17.0.9-1.el6_4
  • OR firefox is earlier than 0:17.0.9-1.el6_4
  • OR rpm test
  • Oracle Linux 5.x
  • AND rpm test
  • xulrunner is earlier than 0:17.0.9-1.el5_9
  • OR xulrunner-devel is earlier than 0:17.0.9-1.el5_9
  • OR firefox is earlier than 0:17.0.9-1.el5_9
  • BACK