Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2011-2983
Description:Mozilla Firefox before 3.6.20, Thunderbird 2.x and 3.x before 3.1.12, SeaMonkey 1.x and 2.x, and possibly other products does not properly handle the RegExp.input property, which allows remote attackers to bypass the Same Origin Policy and read data from a different domain via a crafted web site, possibly related to a use-after-free.
Test IDs: 1.3.6.1.4.1.25623.1.0.70231   1.3.6.1.4.1.25623.1.0.70230   1.3.6.1.4.1.25623.1.0.70232  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2011-2983
Debian Security Information: DSA-2295 (Google Search)
http://www.debian.org/security/2011/dsa-2295
Debian Security Information: DSA-2296 (Google Search)
http://www.debian.org/security/2011/dsa-2296
Debian Security Information: DSA-2297 (Google Search)
http://www.debian.org/security/2011/dsa-2297
http://www.mandriva.com/security/advisories?name=MDVSA-2011:127
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14272
RedHat Security Advisories: RHSA-2011:1164
http://www.redhat.com/support/errata/RHSA-2011-1164.html
RedHat Security Advisories: RHSA-2011:1165
http://www.redhat.com/support/errata/RHSA-2011-1165.html
RedHat Security Advisories: RHSA-2011:1167
http://www.redhat.com/support/errata/RHSA-2011-1167.html
http://www.securitytracker.com/id?1025940
SuSE Security Announcement: SUSE-SA:2011:037 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00023.html
SuSE Security Announcement: SUSE-SU-2011:0967 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00027.html




© 1998-2024 E-Soft Inc. All rights reserved.