VID |
28789 |
Severity |
40 |
Port |
139,445 |
Protocol |
TCP |
Class |
SMB |
Detailed Description |
A version of Mozilla Firefox which is older than 3.5.2 has been installed on the host. Mozilla is an open-source based Web browser, developed by the Mozilla project. Mozilla Firefox versions 3.5.x prior to 3.5. are vulnerable to multiple vulnerabilities.
- A SOCKS5 proxy that replies with a hostname containing more than 15 characters can corrupt the subsequent data stream. This can lead to a denial of service, though there is reportedly no memory corruption.(MFSA 2009-38)
- The location bar and SSL indicators can be spoofed by calling window.open() on an invalid URL. A remote attacker could use this to perform a phishing attack.(MFSA 2009-44)
- Unspecified JavaScript-related vulnerabilities can lead to memory corruption, and possibly arbitrary execution of code. (MFSA 2009-45, MFSA 2009-47)
- If an add-on has a 'Link:' HTTP header when it is installed, the window's global object receives an incorrect security wrapper, which could lead to arbitrary JavaScript being executed with chrome privileges. (MFSA 2009-46)
* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of this condition will result in the check not being performed and a False Negative for all vulnerable hosts.
* References: http://www.mozilla.org/security/announce/2009/mfsa2009-38.html http://www.mozilla.org/security/announce/2009/mfsa2009-44.html http://www.mozilla.org/security/announce/2009/mfsa2009-45.html http://www.mozilla.org/security/announce/2009/mfsa2009-46.html http://www.mozilla.org/security/announce/2009/mfsa2009-47.html
* Platforms Affected: Mozilla Project, Firefox versions 3.5.x prior to 3.5.2 Microsoft Windows Any version Linux Any version |
Recommendation |
Upgrade to the latest version of Firefox (3.5.2 or later), available from the Mozilla Firefox Download Web page at http://www.mozilla.org/ |
Related URL |
CVE-2009-2654,CVE-2009-2470,CVE-2009-2662,CVE-2009-2663,CVE-2009-2664,CVE-2009-2665,CVE-2009-3071,CVE-2009-3075 (CVE) |
Related URL |
35803,35925,35927,35928,36018,36343 (SecurityFocus) |
Related URL |
(ISS) |
|