CVE-2008-5022
Publication date 13 November 2008
Last updated 24 July 2024
Ubuntu priority
The nsXMLHttpRequest::NotifyEventListeners method in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remote attackers to bypass the same-origin policy and execute arbitrary script via multiple listeners, which bypass the inner window check.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | 8.10 intrepid | Not in release |
8.04 LTS hardy |
Fixed 2.0.0.18+nobinonly-0ubuntu0.8.04.1
|
|
7.10 gutsy |
Fixed 2.0.0.18+nobinonly-0ubuntu0.7.10
|
|
6.06 LTS dapper |
Fixed 1.5.dfsg+1.5.0.15~prepatch080614h-0ubuntu1
|
|
firefox-3.0 | 8.10 intrepid |
Fixed 3.0.4+nobinonly-0ubuntu0.8.10.1
|
8.04 LTS hardy |
Fixed 3.0.4+nobinonly-0ubuntu0.8.04.1
|
|
7.10 gutsy | Ignored end of life, was needed | |
6.06 LTS dapper | Not in release | |
iceape | 8.10 intrepid | Not in release |
8.04 LTS hardy | Not in release | |
7.10 gutsy | Ignored end of life, was needed | |
6.06 LTS dapper | Not in release | |
icedove | 8.10 intrepid | Not in release |
8.04 LTS hardy | Not in release | |
7.10 gutsy | Not in release | |
6.06 LTS dapper | Not in release | |
iceweasel | 8.10 intrepid | Not in release |
8.04 LTS hardy | Not in release | |
7.10 gutsy | Not in release | |
6.06 LTS dapper | Not in release | |
mozilla-thunderbird | 8.10 intrepid | Not in release |
8.04 LTS hardy | Not in release | |
7.10 gutsy | Not in release | |
6.06 LTS dapper |
Fixed 1.5.0.13+1.5.0.15~prepatch080614h-0ubuntu0.6.06.1
|
|
seamonkey | 8.10 intrepid |
Fixed 1.1.15+nobinonly-0ubuntu0.8.10.2
|
8.04 LTS hardy |
Fixed 1.1.15+nobinonly-0ubuntu0.8.04.2
|
|
7.10 gutsy | Not in release | |
6.06 LTS dapper | Not in release | |
thunderbird | 8.10 intrepid |
Fixed 2.0.0.18+nobinonly-0ubuntu0.8.10.1
|
8.04 LTS hardy |
Fixed 2.0.0.18+nobinonly-0ubuntu0.8.04.1
|
|
7.10 gutsy |
Fixed 2.0.0.18+nobinonly-0ubuntu0.7.10.1
|
|
6.06 LTS dapper | Not in release | |
xulrunner | 8.10 intrepid |
Fixed 1.8.1.16+nobinonly-0ubuntu1
|
8.04 LTS hardy |
Fixed 1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.8.04.1
|
|
7.10 gutsy |
Fixed 1.8.1.18+nobinonly.b308.cvs20090331t155113-0ubuntu0.7.10.1
|
|
6.06 LTS dapper | Not in release | |
xulrunner-1.9 | 8.10 intrepid |
Fixed 1.9.0.4+nobinonly-0ubuntu0.8.10.1
|
8.04 LTS hardy |
Fixed 1.9.0.4+nobinonly-0ubuntu0.8.04.1
|
|
7.10 gutsy | Ignored end of life, was needed | |
6.06 LTS dapper | Not in release |