CVE-2008-5023: Input Validation
Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remote attackers to bypass the protection mechanism for codebase principals and execute arbitrary script via the -moz-binding CSS property in a signed JAR file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5023?
CVE-2008-5023 is classified as a moderate severity vulnerability due to its potential to execute arbitrary scripts.
How do I fix CVE-2008-5023?
The best way to fix CVE-2008-5023 is to update to versions Firefox 3.0.4 or later, Firefox 2.0.0.18 or later, or SeaMonkey 1.1.13 or later.
What vulnerabilities are associated with CVE-2008-5023?
CVE-2008-5023 is associated with a vulnerability that allows remote attackers to bypass codebase principal protections.
Which applications are affected by CVE-2008-5023?
CVE-2008-5023 affects Firefox versions before 3.0.4, Firefox 2.x before 2.0.0.18, and SeaMonkey before 1.1.13.
What platforms are impacted by CVE-2008-5023?
CVE-2008-5023 impacts multiple platforms including Debian Linux 4.0 and various versions of Ubuntu Linux.