CVE-2007-1004

Publication date 20 February 2007

Last updated 24 July 2024


Ubuntu priority

Description

Mozilla Firefox might allow remote attackers to conduct spoofing and phishing attacks by writing to an about:blank tab and overlaying the location bar.

Read the notes from the security team

Status

Package Ubuntu Release Status
firefox 9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy
Not affected
7.10 gutsy Ignored end of life, was needed
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life

Notes


jdstrand

I have sanitized test code that demonstrates the vulnerability


Access our resources on patching vulnerabilities