CVE-2013-5614
Publication date 11 December 2013
Last updated 24 July 2024
Ubuntu priority
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 do not properly consider the sandbox attribute of an IFRAME element during processing of a contained OBJECT element, which allows remote attackers to bypass intended sandbox restrictions via a crafted web site.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | 13.10 saucy |
Fixed 26.0+build2-0ubuntu0.13.10.2
|
13.04 raring |
Fixed 26.0+build2-0ubuntu0.13.04.2
|
|
12.10 quantal |
Fixed 26.0+build2-0ubuntu0.12.10.2
|
|
12.04 LTS precise |
Fixed 26.0+build2-0ubuntu0.12.04.2
|
|
10.04 LTS lucid | Ignored end of life |
References
Related Ubuntu Security Notices (USN)
- USN-2052-1
- Firefox vulnerabilities
- 11 December 2013