CVE-2007-0994
A regression error in Mozilla Firefox 2.x before 2.0.0.2 and 1.x before 1.5.0.10, and SeaMonkey 1.1 before 1.1.1 and 1.0 before 1.0.8, allows remote attackers to execute arbitrary JavaScript as the user via an HTML mail message with a javascript: URI in…
Does this matter?
Lower severity and a low EPSS score (3.21%). Track it; it rarely justifies an emergency change on its own.
Description
A regression error in Mozilla Firefox 2.x before 2.0.0.2 and 1.x before 1.5.0.10, and SeaMonkey 1.1 before 1.1.1 and 1.0 before 1.0.8, allows remote attackers to execute arbitrary JavaScript as the user via an HTML mail message with a javascript: URI in an (1) img, (2) link, or (3) style tag, which bypasses the access checks and executes code with chrome privileges.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 3.21% probability · 87th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-94
- Affected
- mozilla/firefox · mozilla/seamonkey · debian/debian linux
- Source
- secalert@redhat.com
References
- ftp://patches.sgi.com/support/free/security/advisories/20070202-01-P.ascBroken Link
- ftp://patches.sgi.com/support/free/security/advisories/20070301-01-P.ascBroken Link
- http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=230733Exploit, Issue Tracking, Patch, Third Party Advisory
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742Broken Link
- http://lists.suse.com/archive/suse-security-announce/2007-Mar/0001.htmlBroken Link
- http://secunia.com/advisories/24384Third Party Advisory
- http://secunia.com/advisories/24395Third Party Advisory
- http://secunia.com/advisories/24455Third Party Advisory
- http://secunia.com/advisories/24457Third Party Advisory
- http://secunia.com/advisories/24650Third Party Advisory
- http://secunia.com/advisories/25588Third Party Advisory
- http://securitytracker.com/id?1017726Third Party Advisory, VDB Entry
- http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.338131Mailing List, Third Party Advisory
- http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.374851Mailing List, Third Party Advisory
- http://www.debian.org/security/2007/dsa-1336Third Party Advisory
- http://www.mozilla.org/security/announce/2007/mfsa2007-09.htmlVendor Advisory
- http://www.novell.com/linux/security/advisories/2007_22_mozilla.htmlBroken Link
- http://www.redhat.com/support/errata/RHSA-2007-0078.htmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2007-0097.htmlThird Party Advisory
- http://www.securityfocus.com/bid/22826Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2007/0823Third Party Advisory
- https://issues.rpath.com/browse/RPL-1103Broken Link
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9749Third Party Advisory
- ftp://patches.sgi.com/support/free/security/advisories/20070202-01-P.ascBroken Link
- ftp://patches.sgi.com/support/free/security/advisories/20070301-01-P.ascBroken Link
- http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=230733Exploit, Issue Tracking, Patch, Third Party Advisory
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742Broken Link
- http://lists.suse.com/archive/suse-security-announce/2007-Mar/0001.htmlBroken Link
- http://secunia.com/advisories/24384Third Party Advisory
- http://secunia.com/advisories/24395Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.