FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2006-1725

This CVE name corresponds to:

Entered Topic
2006-04-16 mozilla -- multiple vulnerabilities

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2006-1725
Phase Assigned(20060412)

Description

Mozilla Firefox 1.5 before 1.5.0.2 and SeaMonkey before 1.0.1 causes certain windows to become translucent due to an interaction between XUL content windows and the history mechanism, which might allow user-assisted remote attackers to trick users into executing arbitrary code.

References

Source Reference
CONFIRM http://www.mozilla.org/security/announce/2006/mfsa2006-29.html
MISC https://bugzilla.mozilla.org/show_bug.cgi?id=327014
HP HPSBUX02153
HP SSRT061181
BID 17516
FRSIRT ADV-2006-1356
FRSIRT ADV-2006-3748
FRSIRT ADV-2008-0083
OVAL oval:org.mitre.oval:def:1471
SECUNIA 19631
SECUNIA 19649
SECUNIA 22066
XF mozilla-xul-window-spoofing(25827)