CVE-2011-2372
Publication date 28 September 2011
Last updated 24 July 2024
Ubuntu priority
Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 do not prevent the starting of a download in response to the holding of the Enter key, which allows user-assisted remote attackers to bypass intended access restrictions via a crafted web site.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | ||
firefox-3.0 | ||
firefox-3.5 | ||
seamonkey | ||
thunderbird | ||
xulrunner-1.9.2 | ||
xulrunner-2.0 | ||
References
Related Ubuntu Security Notices (USN)
- USN-1210-1
- Firefox and Xulrunner vulnerabilities
- 28 September 2011
- USN-1213-1
- Thunderbird vulnerabilities
- 28 September 2011
- USN-1222-1
- Firefox vulnerabilities
- 29 September 2011