CVE-2011-1712
Publication date 15 April 2011
Last updated 24 July 2024
Ubuntu priority
The txXPathNodeUtils::getXSLTId function in txMozillaXPathTreeWalker.cpp and txStandaloneXPathTreeWalker.cpp in Mozilla Firefox before 3.5.19, 3.6.x before 3.6.17, and 4.x before 4.0.1, and SeaMonkey before 2.0.14, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | 13.10 saucy |
Fixed 4.0.1+build1+nobinonly-0ubuntu0.11.04.1
|
13.04 raring |
Fixed 4.0.1+build1+nobinonly-0ubuntu0.11.04.1
|
|
12.10 quantal |
Fixed 4.0.1+build1+nobinonly-0ubuntu0.11.04.1
|
|
12.04 LTS precise |
Fixed 4.0.1+build1+nobinonly-0ubuntu0.11.04.1
|
|
11.10 oneiric |
Fixed 4.0.1+build1+nobinonly-0ubuntu0.11.04.1
|
|
11.04 natty |
Fixed 4.0.1+build1+nobinonly-0ubuntu0.11.04.1
|
|
10.10 maverick |
Fixed 3.6.17+build3+nobinonly-0ubuntu0.10.10.1
|
|
10.04 LTS lucid |
Fixed 3.6.17+build3+nobinonly-0ubuntu0.10.04.1
|
|
9.10 karmic | Not in release | |
8.04 LTS hardy | Ignored end of life | |
6.06 LTS dapper | Ignored end of life | |
seamonkey | 13.10 saucy | Not in release |
13.04 raring | Not in release | |
12.10 quantal | Not in release | |
12.04 LTS precise | Not in release | |
11.10 oneiric |
Not affected
|
|
11.04 natty | Ignored end of life | |
10.10 maverick | Ignored end of life | |
10.04 LTS lucid | Ignored end of life | |
9.10 karmic | Ignored end of life | |
8.04 LTS hardy | Ignored end of life | |
6.06 LTS dapper | Not in release | |
xulrunner-1.9.2 | 13.10 saucy | Not in release |
13.04 raring | Not in release | |
12.10 quantal | Not in release | |
12.04 LTS precise | Not in release | |
11.10 oneiric | Not in release | |
11.04 natty |
Fixed 1.9.2.17+build3+nobinonly-0ubuntu1
|
|
10.10 maverick |
Fixed 1.9.2.17+build3+nobinonly-0ubuntu0.10.10.1
|
|
10.04 LTS lucid |
Fixed 1.9.2.17+build3+nobinonly-0ubuntu0.10.04.1
|
|
9.10 karmic | Ignored end of life | |
8.04 LTS hardy | Ignored end of life | |
6.06 LTS dapper | Not in release |