Oval Definition:oval:org.mitre.oval:def:742
Revision Date:2005-10-12Version:3
Title:RHE3 Improper Handling of Synthetic Events in Mozilla
Description:The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2005-2260
Platform(s):Red Hat Enterprise Linux 3
Product(s):mozilla
Definition Synopsis
  • Software section
  • Red Hat Enterprise 3 is installed
  • AND mozilla RPM is earlier than 37:1.7.10-1.1.3.1
  • AND Configuration section
  • /usr/bin/mozilla is executable
  • BACK