Multiple Browser Cross-Domain Cookie Injection Vulnerability
BID:11186
Info
Multiple Browser Cross-Domain Cookie Injection Vulnerability
| Bugtraq ID: | 11186 |
| Class: | Design Error |
| CVE: |
CVE-2004-0746 CVE-2004-0866 CVE-2004-0867 CVE-2004-0868 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 15 2004 12:00AM |
| Updated: | Jul 12 2009 07:06AM |
| Credit: | Discovery is credited to Paul Johnston <[email protected]>. |
| Vulnerable: |
SuSE SUSE Linux Enterprise Server 8 SuSE Linux Desktop 1.0 SuSE Linux 8.1 S.u.S.E. Linux Personal 9.0 S.u.S.E. Linux Personal 8.2 Mozilla Firefox 0.9.2 Microsoft Internet Explorer 6.0 SP2 - do not use Microsoft Internet Explorer 6.0 SP1 Microsoft Internet Explorer 6.0 KDE Konqueror 3.2.3 KDE Konqueror 3.2.1 KDE Konqueror 3.1.5 KDE Konqueror 3.1.4 KDE Konqueror 3.1.3 KDE Konqueror 3.1.2 KDE Konqueror 3.1.1 KDE Konqueror 3.1 KDE Konqueror 3.0.5 b KDE Konqueror 3.0.5 KDE Konqueror 3.0.3 KDE Konqueror 3.0.2 KDE Konqueror 3.0.1 KDE Konqueror 3.0 KDE Konqueror 2.2.2 KDE Konqueror 2.2.1 KDE Konqueror 2.1.2 KDE Konqueror 2.1.1 |
| Not Vulnerable: |
KDE Konqueror 3.3 |
Discussion
Multiple Browser Cross-Domain Cookie Injection Vulnerability
Multiple Browsers are reported prone to a cross-domain cookie injection vulnerability. This issue is identified in Microsoft Internet Explorer, KDE Konqueror, and Mozilla and may allow an attacker to carry out session hijacking attacks.
The issue presents itself due to a design error in multiple browsers that allows cookies to be incorrectly sent to other domains.
This BID will be divided and updated as more information becomes available.
Multiple Browsers are reported prone to a cross-domain cookie injection vulnerability. This issue is identified in Microsoft Internet Explorer, KDE Konqueror, and Mozilla and may allow an attacker to carry out session hijacking attacks.
The issue presents itself due to a design error in multiple browsers that allows cookies to be incorrectly sent to other domains.
This BID will be divided and updated as more information becomes available.
Exploit / POC
Multiple Browser Cross-Domain Cookie Injection Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
Multiple Browser Cross-Domain Cookie Injection Vulnerability
Solution:
KDE has released an advisory (advisory-20040823-1) to address this issue in Konqueror. Please see the referenced advisory for more information.
SuSE has released advisory SUSE-SA:2004:035 mainly to address the vulnerability described in BID 11281. However, in the addendum of this advisory, it is reported that fixes for the issues described in this BID for the Opera browser are now available on the SuSE update FTP server for download. Customers are advised to see the referenced advisory for further information regarding obtaining and applying appropriate updates.
Red Hat has released an advisory (RHSA-2004:412-10) to address various issues affecting KDE in Red Hat Enterprise Linux. Please see the advisory in Web references for more information.
Solution:
KDE has released an advisory (advisory-20040823-1) to address this issue in Konqueror. Please see the referenced advisory for more information.
SuSE has released advisory SUSE-SA:2004:035 mainly to address the vulnerability described in BID 11281. However, in the addendum of this advisory, it is reported that fixes for the issues described in this BID for the Opera browser are now available on the SuSE update FTP server for download. Customers are advised to see the referenced advisory for further information regarding obtaining and applying appropriate updates.
Red Hat has released an advisory (RHSA-2004:412-10) to address various issues affecting KDE in Red Hat Enterprise Linux. Please see the advisory in Web references for more information.
References
Multiple Browser Cross-Domain Cookie Injection Vulnerability
References:
References: