Candidate: CVE-2008-5504 PublicDate: 2008-12-17 23:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5504 https://ubuntu.com/security/notices/USN-690-2 Description: Mozilla Firefox 2.x before 2.0.0.19 allows remote attackers to run arbitrary JavaScript with chrome privileges via vectors related to the feed preview, a different vulnerability than CVE-2008-3836. Ubuntu-Description: Notes: Bugs: Priority: untriaged Discovered-by: Assigned-to: CVSS: Patches_firefox: upstream_firefox: released (2.0.0.19) dapper_firefox: released (1.5.dfsg+1.5.0.15~prepatch080614i-0ubuntu1) gutsy_firefox: released (2.0.0.19+nobinonly1-0ubuntu0.7.10.1) hardy_firefox: released (2.0.0.19+nobinonly1-0ubuntu0.8.04.1) intrepid_firefox: DNE devel_firefox: DNE