CVE-2005-0146: Medium severity Mozilla Firefox vulnerability
Published Jan 29, 2005
·Updated
Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to obtain sensitive data from the clipboard via Javascript that generates a middle-click event on systems for which a middle-click performs a paste operation.
Affected Software
10 affected components
Mozilla Firefox=0.8
Mozilla Firefox=0.9
Mozilla Firefox=0.9.1
Mozilla Firefox=0.9.2
Mozilla Firefox=0.9.3
Mozilla Mozilla=1.7
Mozilla Mozilla=1.7-rc3
Mozilla Mozilla=1.7.1
Mozilla Mozilla=1.7.2
Mozilla Mozilla=1.7.3
Remediation
Patch Available
Event History
Jan 29, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0146?
CVE-2005-0146 has a medium severity rating due to the potential exposure of sensitive information from the clipboard.
2
How do I fix CVE-2005-0146?
To fix CVE-2005-0146, update to the latest version of Firefox or Mozilla that addresses this vulnerability.
3
Which versions of Firefox are affected by CVE-2005-0146?
Firefox versions before 1.0, including 0.8 and 0.9, are affected by CVE-2005-0146.
4
Are any versions of Mozilla affected by CVE-2005-0146?
Yes, Mozilla versions prior to 1.7.5 are affected by CVE-2005-0146.
5
What type of attack does CVE-2005-0146 involve?
CVE-2005-0146 involves a JavaScript attack that can exploit clipboard data through a middle-click event.