PT-2008-6571 · Mozilla+1 · Firefox+1

Published

2008-12-17

·

Updated

2023-02-13

·

CVE-2008-5504

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 2.0.0.19
Description A issue in Mozilla Firefox allows remote attackers to run arbitrary JavaScript with chrome privileges. This is related to vectors involving the feed preview.
Recommendations For versions prior to 2.0.0.19, update to version 2.0.0.19 or later to resolve the issue.

Fix

Weakness Enumeration

Related Identifiers

CVE-2008-5504
DSA-1707-1
RHSA-2008:1037
RHSA-2008_1037

Affected Products

Firefox
Red Hat