Mozilla Browser Zombie Document Cross-Site Scripting Vulnerability
BID:9747
Info
Mozilla Browser Zombie Document Cross-Site Scripting Vulnerability
| Bugtraq ID: | 9747 |
| Class: | Design Error |
| CVE: |
CVE-2004-0191 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 25 2004 12:00AM |
| Updated: | Jul 12 2009 03:06AM |
| Credit: | Disclosure of this issue is credited to Andreas Sandblad <[email protected]>. |
| Vulnerable: |
SGI ProPack 3.0 SGI ProPack 2.4 SGI ProPack 2.3 Redhat Linux 9.0 i386 Redhat Linux 7.3 i686 Redhat Linux 7.3 i386 Redhat Linux 7.3 Redhat Fedora Core1 Mozilla Browser 1.5 Mozilla Browser 1.4.2 Mozilla Browser 1.4.1 Mozilla Browser 1.4 b Mozilla Browser 1.4 a Mozilla Browser 1.4 Mozilla Browser 1.3.1 Mozilla Browser 1.3 Mozilla Browser 1.2.1 Mozilla Browser 1.2 Beta Mozilla Browser 1.2 Alpha Mozilla Browser 1.2 Mozilla Browser 1.1 Beta Mozilla Browser 1.1 Alpha Mozilla Browser 1.1 Mozilla Browser 1.0.2 Mozilla Browser 1.0.1 Mozilla Browser 1.0 RC2 Mozilla Browser 1.0 RC1 Mozilla Browser 1.0 Mozilla Browser 0.9.48 Mozilla Browser 0.9.35 Mozilla Browser 0.9.9 Mozilla Browser 0.9.8 Mozilla Browser 0.9.7 Mozilla Browser 0.9.6 Mozilla Browser 0.9.5 Mozilla Browser 0.9.4 .1 Mozilla Browser 0.9.4 Mozilla Browser 0.9.3 Mozilla Browser 0.9.2 .1 Mozilla Browser 0.9.2 Mozilla Browser 0.8 |
| Not Vulnerable: | |
Discussion
Mozilla Browser Zombie Document Cross-Site Scripting Vulnerability
Mozilla has been reported to be prone to a cross-site scripting vulnerability. This issue is due to a design error that allows event handlers in a web document from one domain to be executed in the context of another.
This could permit a remote attacker to create a malicious web page that includes hostile event handling script code. If this page were to redirect to a target page when certain event handling code was activated, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the new page and may allow for theft of cookie-based authentication credentials or other attacks.
Mozilla has been reported to be prone to a cross-site scripting vulnerability. This issue is due to a design error that allows event handlers in a web document from one domain to be executed in the context of another.
This could permit a remote attacker to create a malicious web page that includes hostile event handling script code. If this page were to redirect to a target page when certain event handling code was activated, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the new page and may allow for theft of cookie-based authentication credentials or other attacks.
Exploit / POC
Mozilla Browser Zombie Document Cross-Site Scripting Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Mozilla Browser Zombie Document Cross-Site Scripting Vulnerability
Solution:
Mozilla has released a patch dealing with this issue. Customers are advised to contact the vendor for further details for obtaining the appropriate patch. Please see the reference section for more details.
SGI have released an advisory (20040402-01-U) and a patch to address this issue in SGI ProPack version 2.3 and 2.4. The vendor has advised that customers apply this patch as soon as possible. Further details regarding obtaining and applying an appropriate patch can be found in the referenced advisory. Patch is linked below.
Redhat has released advisory RHSA-2004:112-01 dealing with this issue. Please see the reference for more information.
RedHat has released an update to the previously released advisory RHSA-2004:110-19, RHSA-2004:110-20 is now available and deals with this issue for their Enterprise linux distribution. Please see the referenced advisory for more information and details on obtaining fixes.
HP has released advisory HPSBUX01036-SSRT4722 dealing with this and other issues; fixes have been provided.
SGI has released an advisory (20040506-01-U) with Patch 10075 for SGI
ProPack 3 to address this and other issues. Please see the referenced
advisory for more information.
The Fedora Legacy project has released advisory FLSA-2004:2089 along with fixes to address multiple issues in RedHat Fedora Core 1, and RedHat Linux 7.3 and 9.0. Please see the referenced advisory for further information.
Mozilla Browser 0.9.9
Mozilla Browser 1.2 Alpha
Mozilla Browser 1.2
Mozilla Browser 1.2 Beta
Mozilla Browser 1.2.1
Mozilla Browser 1.4 b
Mozilla Browser 1.4
Mozilla Browser 1.4 a
Mozilla Browser 1.4.1
Mozilla Browser 1.4.2
SGI ProPack 2.3
SGI ProPack 2.4
SGI ProPack 3.0
Solution:
Mozilla has released a patch dealing with this issue. Customers are advised to contact the vendor for further details for obtaining the appropriate patch. Please see the reference section for more details.
SGI have released an advisory (20040402-01-U) and a patch to address this issue in SGI ProPack version 2.3 and 2.4. The vendor has advised that customers apply this patch as soon as possible. Further details regarding obtaining and applying an appropriate patch can be found in the referenced advisory. Patch is linked below.
Redhat has released advisory RHSA-2004:112-01 dealing with this issue. Please see the reference for more information.
RedHat has released an update to the previously released advisory RHSA-2004:110-19, RHSA-2004:110-20 is now available and deals with this issue for their Enterprise linux distribution. Please see the referenced advisory for more information and details on obtaining fixes.
HP has released advisory HPSBUX01036-SSRT4722 dealing with this and other issues; fixes have been provided.
SGI has released an advisory (20040506-01-U) with Patch 10075 for SGI
ProPack 3 to address this and other issues. Please see the referenced
advisory for more information.
The Fedora Legacy project has released advisory FLSA-2004:2089 along with fixes to address multiple issues in RedHat Fedora Core 1, and RedHat Linux 7.3 and 9.0. Please see the referenced advisory for further information.
Mozilla Browser 0.9.9
-
RedHat galeon-1.2.13-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/galeon-1.2.13 -0.7.1.legacy.i386.rpm -
RedHat mozilla-1.4.3-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/mozilla-1.4.3 -0.7.1.legacy.i386.rpm -
RedHat mozilla-chat-1.4.3-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/mozilla-chat- 1.4.3-0.7.1.legacy.i386.rpm -
RedHat mozilla-devel-1.4.3-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/mozilla-devel -1.4.3-0.7.1.legacy.i386.rpm -
RedHat mozilla-dom-inspector-1.4.3-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/mozilla-dom-i nspector-1.4.3-0.7.1.legacy.i386.rpm -
RedHat mozilla-js-debugger-1.4.3-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/mozilla-js-de bugger-1.4.3-0.7.1.legacy.i386.rpm -
RedHat mozilla-mail-1.4.3-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/mozilla-mail- 1.4.3-0.7.1.legacy.i386.rpm -
RedHat mozilla-nspr-1.4.3-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/mozilla-nspr- 1.4.3-0.7.1.legacy.i386.rpm -
RedHat mozilla-nspr-devel-1.4.3-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/mozilla-nspr- devel-1.4.3-0.7.1.legacy.i386.rpm -
RedHat mozilla-nss-1.4.3-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/mozilla-nss-1 .4.3-0.7.1.legacy.i386.rpm -
RedHat mozilla-nss-devel-1.4.3-0.7.1.legacy.i386.rpm
RedHat Linux 7.3
http://download.fedoralegacy.org/redhat/7.3/updates/i386/mozilla-nss-d evel-1.4.3-0.7.1.legacy.i386.rpm
Mozilla Browser 1.2 Alpha
-
HP Mozilla 1.2.1.01 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html
Mozilla Browser 1.2
-
HP Mozilla 1.2.1.01 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html
Mozilla Browser 1.2 Beta
-
HP Mozilla 1.2.1.01 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html
Mozilla Browser 1.2.1
-
HP Mozilla 1.2.1.01 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html -
RedHat galeon-1.2.13-0.9.2.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/galeon-1.2.13-0 .9.2.legacy.i386.rpm -
RedHat mozilla-1.4.3-0.9.1.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/mozilla-1.4.3-0 .9.1.legacy.i386.rpm -
RedHat mozilla-chat-1.4.3-0.9.1.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/mozilla-chat-1. 4.3-0.9.1.legacy.i386.rpm -
RedHat mozilla-devel-1.4.3-0.9.1.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/mozilla-devel-1 .4.3-0.9.1.legacy.i386.rpm -
RedHat mozilla-dom-inspector-1.4.3-0.9.1.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/mozilla-dom-ins pector-1.4.3-0.9.1.legacy.i386.rpm -
RedHat mozilla-js-debugger-1.4.3-0.9.1.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/mozilla-js-debu gger-1.4.3-0.9.1.legacy.i386.rpm -
RedHat mozilla-mail-1.4.3-0.9.1.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/mozilla-mail-1. 4.3-0.9.1.legacy.i386.rpm -
RedHat mozilla-nspr-1.4.3-0.9.1.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/mozilla-nspr-1. 4.3-0.9.1.legacy.i386.rpm -
RedHat mozilla-nspr-devel-1.4.3-0.9.1.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/mozilla-nspr-de vel-1.4.3-0.9.1.legacy.i386.rpm -
RedHat mozilla-nss-1.4.3-0.9.1.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/mozilla-nss-1.4 .3-0.9.1.legacy.i386.rpm -
RedHat mozilla-nss-devel-1.4.3-0.9.1.legacy.i386.rpm
RedHat Linux 9
http://download.fedoralegacy.org/redhat/9/updates/i386/mozilla-nss-dev el-1.4.3-0.9.1.legacy.i386.rpm
Mozilla Browser 1.4 b
-
HP Mozilla 1.4.00.01 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html -
HP Mozilla 1.6.0.00 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html
Mozilla Browser 1.4
-
HP Mozilla 1.4.00.01 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html -
HP Mozilla 1.6.0.00 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html
Mozilla Browser 1.4 a
-
HP Mozilla 1.4.00.01 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html -
HP Mozilla 1.6.0.00 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html
Mozilla Browser 1.4.1
-
HP Mozilla 1.4.00.01 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html -
HP Mozilla 1.6.0.00 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html -
RedHat epiphany-1.0.4-2.4.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/epiphany-1.0.4- 2.4.legacy.i386.rpm -
RedHat mozilla-1.4.3-1.fc1.1.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-1.4.3-1 .fc1.1.legacy.i386.rpm -
RedHat mozilla-chat-1.4.3-1.fc1.1.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-chat-1. 4.3-1.fc1.1.legacy.i386.rpm -
RedHat mozilla-devel-1.4.3-1.fc1.1.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-devel-1 .4.3-1.fc1.1.legacy.i386.rpm -
RedHat mozilla-dom-inspector-1.4.3-1.fc1.1.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-dom-ins pector-1.4.3-1.fc1.1.legacy.i386.rpm -
RedHat mozilla-js-debugger-1.4.3-1.fc1.1.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-js-debu gger-1.4.3-1.fc1.1.legacy.i386.rpm -
RedHat mozilla-mail-1.4.3-1.fc1.1.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-mail-1. 4.3-1.fc1.1.legacy.i386.rpm -
RedHat mozilla-nspr-1.4.3-1.fc1.1.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-nspr-1. 4.3-1.fc1.1.legacy.i386.rpm -
RedHat mozilla-nspr-devel-1.4.3-1.fc1.1.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-nspr-de vel-1.4.3-1.fc1.1.legacy.i386.rpm -
RedHat mozilla-nss-1.4.3-1.fc1.1.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-nss-1.4 .3-1.fc1.1.legacy.i386.rpm -
RedHat mozilla-nss-devel-1.4.3-1.fc1.1.legacy.i386.rpm
RedHat Fedora Core 1
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-nss-dev el-1.4.3-1.fc1.1.legacy.i386.rpm
Mozilla Browser 1.4.2
-
HP Mozilla 1.4.00.01 for HP-UX
http://www.hp.com/products1/unix/java/mozilla/index.html -
Red Hat mozilla-1.4.2-0.9.0.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/mozilla-1.4.2-0.9.0.i386.rpm -
Red Hat mozilla-chat-1.4.2-0.9.0.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/mozilla-chat-1.4.2-0.9.0.i386.rp m -
Red Hat mozilla-devel-1.4.2-0.9.0.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/mozilla-devel-1.4.2-0.9.0.i386.r pm -
Red Hat mozilla-dom-inspector-1.4.2-0.9.0.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/mozilla-dom-inspector-1.4.2-0.9. 0.i386.rpm -
Red Hat mozilla-js-debugger-1.4.2-0.9.0.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/mozilla-js-debugger-1.4.2-0.9.0. i386.rpm -
Red Hat mozilla-mail-1.4.2-0.9.0.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/mozilla-mail-1.4.2-0.9.0.i386.rp m -
Red Hat mozilla-nspr-1.4.2-0.9.0.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/mozilla-nspr-1.4.2-0.9.0.i386.rp m -
Red Hat mozilla-nspr-devel-1.4.2-0.9.0.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/mozilla-nspr-devel-1.4.2-0.9.0.i 386.rpm -
Red Hat mozilla-nss-1.4.2-0.9.0.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/mozilla-nss-1.4.2-0.9.0.i386.rpm -
Red Hat mozilla-nss-devel-1.4.2-0.9.0.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/mozilla-nss-devel-1.4.2-0.9.0.i3 86.rpm
SGI ProPack 2.3
-
SGI patch10064.tar.gz
ftp://patches.sgi.com/support/free/security/patches/ProPack/2.3/patch1 0064.tar.gz
SGI ProPack 2.4
-
SGI patch10064.tar.gz
ftp://patches.sgi.com/support/free/security/patches/ProPack/2.4/patch1 0064.tar.gz
SGI ProPack 3.0
-
SGI patch10075.tar.gz
ftp://patches.sgi.com/support/free/security/patches/ProPack/3/
References
Mozilla Browser Zombie Document Cross-Site Scripting Vulnerability
References:
References:
- Bugzilla Bug 227417 (Mozilla)
- Make sure we get the scope right even when wrapping "zombie nodes" (#136762) (Mozilla)
- Mozilla Homepage (Mozilla Foundation)
- RHSA-2004:110-19 Updated Mozilla packages fix security issues (RedHat)
- RHSA-2004:110-20 - Updated Mozilla packages fix security issues (RedHat)
- Sandblad #13: Cross-domain exploit on zombie document with even handlers (Andreas Sandblad
)