CVE-2012-3980
Publication date 29 August 2012
Last updated 24 July 2024
Ubuntu priority
The web console in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, and Thunderbird ESR 10.x before 10.0.7 allows user-assisted remote attackers to execute arbitrary JavaScript code with chrome privileges via a crafted web site that injects this code and triggers an eval operation.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | ||
seamonkey | ||
thunderbird | ||
xulrunner-1.9.2 | ||
xulrunner-2.0 | ||
References
Related Ubuntu Security Notices (USN)
- USN-1548-1
- Firefox vulnerabilities
- 29 August 2012
- USN-1551-1
- Thunderbird vulnerabilities
- 30 August 2012