CVE-2014-1489

Publication date 5 February 2014

Last updated 24 July 2024


Ubuntu priority

Mozilla Firefox before 27.0 does not properly restrict access to about:home buttons by script on other pages, which allows user-assisted remote attackers to cause a denial of service (session restore) via a crafted web site.

Status

Package Ubuntu Release Status
firefox 13.10 saucy
Fixed 27.0+build1-0ubuntu0.13.10.1
12.10 quantal
Fixed 27.0+build1-0ubuntu0.12.10.1
12.04 LTS precise
Fixed 27.0+build1-0ubuntu0.12.04.1
10.04 LTS lucid Ignored end of life

References

Related Ubuntu Security Notices (USN)

    • USN-2102-1
    • Firefox vulnerabilities
    • 10 February 2014

Other references