Reflected cross-site scripting (XSS) In xulrunner
Description
Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 allows remote attackers to inject arbitrary web script or HTML via crafted text with Shift JIS encoding.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
rpm rhel5 | 0:3.6.24-3.el5_7 | ||
rpm rhel6 | 0:3.6.24-3.el6_1 | ||
rpm rhel5 | 0:2.0.0.24-27.el5_7 | ||
rpm rhel6 | 0:3.1.16-2.el6_1 | ||
rpm rhel5 | 0:1.9.2.24-2.el5_7 | ||
rpm rhel6 | 0:1.9.2.24-2.el6_1.1 |
Aliases
1. 2. 3.