Oval Definition:oval:org.mitre.oval:tst:121316
Comment:Mozilla Firefox Mainline version is less than or equal to 16.0
Type:file_testNamespace:windows
Check_Existence:at_least_one_existsCheck:all
State Operator:AND
References
Object:oval:org.mitre.oval:obj:30321
State:oval:org.mitre.oval:ste:33343
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:16719
V
The mozilla::net::FailDelayManager::Lookup function in the WebSockets implementation in Mozilla Firefox before 16.0.1, Thunderbird before 16.0.1, and SeaMonkey before 2.13.1 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
2014-10-06
oval:org.mitre.oval:def:16786
V
Mozilla Firefox before 16.0.1, Firefox ESR 10.x before 10.0.9, Thunderbird before 16.0.1, Thunderbird ESR 10.x before 10.0.9, and SeaMonkey before 2.13.1 omit a security check in the defaultValue function during the unwrapping of security wrappers, which allows remote attackers to bypass the Same Origin Policy and read the properties of a Location object, or execute arbitrary JavaScript code, via a crafted web site.
2014-10-06
oval:org.mitre.oval:def:16869
V
DEPRECATED: The FT2FontEntry1 on CyanogenMod 10, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
2014-09-17
oval:org.mitre.oval:def:17095
V
Mozilla Firefox 16.0, Thunderbird 16.0, and SeaMonkey 2.13 allow remote attackers to bypass the Same Origin Policy and read the properties of a Location object via a crafted web site, a related issue to CVE-2012-4193.
2014-10-06
BACK