CVE-2014-1552
Publication date 22 July 2014
Last updated 24 July 2024
Ubuntu priority
Mozilla Firefox before 31.0 and Thunderbird before 31.0 do not properly implement the sandbox attribute of the IFRAME element, which allows remote attackers to bypass intended restrictions on same-origin content via a crafted web site in conjunction with a redirect.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | 14.04 LTS trusty |
Fixed 31.0+build1-0ubuntu0.14.04.1
|
thunderbird | 14.04 LTS trusty |
Fixed 1:31.0+build1-0ubuntu0.14.04.1
|
References
Related Ubuntu Security Notices (USN)
- USN-2296-1
- Thunderbird vulnerabilities
- 22 July 2014
- USN-2295-1
- Firefox vulnerabilities
- 22 July 2014