PublicDate: 2005-09-28 18:03:00 UTC Candidate: CVE-2005-3089 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3089 Description: Firefox 1.0.6 allows attackers to cause a denial of service (crash) via a Proxy Auto-Config (PAC) script that uses an eval statement. NOTE: it is not clear whether an untrusted party has any role in triggering this issue, so it might not be a vulnerability. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_firefox: released (1.5.dfsg+1.5.0.13~prepatch070731-0ubuntu1) edgy_firefox: released (2.0.0.6+0dfsg-0ubuntu0.6.10) feisty_firefox: released (2.0.0.6+1-0ubuntu1) devel_firefox: released (2.0.0.6+2-0ubuntu4) upstream_firefox: needs-triage