PublicDate: 2005-09-23 19:03:00 UTC Candidate: CVE-2005-2704 References: https://ubuntu.com/security/notices/USN-200-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2704 Description: Firefox before 1.0.7 and Mozilla Suite before 1.7.12 allows remote attackers to spoof DOM objects via an XBL control that implements an internal XPCOM interface. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_mozilla: released (1.7.12-1.1ubuntu2) edgy_mozilla: released (1.7.12-1.1ubuntu2) feisty_mozilla: DNE devel_mozilla: DNE dapper_mozilla-thunderbird: released (1.5.0.13-0ubuntu0.6.06) edgy_mozilla-thunderbird: released (1.5.0.13-0ubuntu0.6.10) feisty_mozilla-thunderbird: released (1.5.0.13-0ubuntu0.7.04) devel_mozilla-thunderbird: DNE dapper_firefox: released (1.5.dfsg+1.5.0.13~prepatch070731-0ubuntu1) edgy_firefox: released (2.0.0.6+0dfsg-0ubuntu0.6.10) feisty_firefox: released (2.0.0.6+1-0ubuntu1) devel_firefox: released (2.0.0.6+2-0ubuntu4) upstream_firefox: needs-triage upstream_mozilla: needs-triage upstream_mozilla-thunderbird: needs-triage