CVE-2010-0648
Publication date 18 February 2010
Last updated 24 July 2024
Ubuntu priority
Mozilla Firefox, possibly before 3.6, allows remote attackers to discover a redirect’s target URL, for the session of a specific user of a web site, by placing the site’s URL in the HREF attribute of a stylesheet LINK element, and then reading the document.styleSheets[0].href property value, related to an IFRAME element.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | 9.10 karmic | Not in release |
9.04 jaunty | Not in release | |
8.10 intrepid | Not in release | |
8.04 LTS hardy |
Not affected
|
|
6.06 LTS dapper | Ignored end of life | |
xulrunner-1.9.2 | 9.10 karmic | Ignored end of life, was needs-triage |
9.04 jaunty | Ignored end of life, was needs-triage | |
8.10 intrepid | Not in release | |
8.04 LTS hardy |
Fixed 1.9.2.6+nobinonly-0ubuntu0.8.04.1
|
|
6.06 LTS dapper | Not in release |