CVE-2009-2471
Publication date 22 July 2009
Last updated 24 July 2024
Ubuntu priority
The setTimeout function in Mozilla Firefox before 3.0.12 does not properly preserve object wrapping, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via a crafted call, related to XPCNativeWrapper.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | ||
xulrunner-1.9 | ||
xulrunner-1.9.1 | ||