CVE-2009-1835: Infoleak
Mozilla Firefox before 3.0.11 and SeaMonkey before 1.1.17 associate local documents with external domain names located after the file:// substring in a URL, which allows user-assisted remote attackers to read arbitrary cookies via a crafted HTML document, as demonstrated by a URL with file://example.com/C:/ at the beginning.
Other sources
Security researcher Gregory Fleischer reported that local resources loaded via the file: protocol can access any domain's cookies which have been saved on a user's machine. Fleischer demonstrated that a local document's domain was being calculated incorrectly from its URL. If a victim could be persuaded to download a malicious file and then open that file in their browser, the malicious file could then steal arbitrary cookies from the victim's computer. Due to the interaction required for this attack, the severity of the issue was determined to be moderate.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1835?
CVE-2009-1835 has a medium severity rating, which indicates a moderate risk to affected users.
How do I fix CVE-2009-1835?
To fix CVE-2009-1835, upgrade to Mozilla Firefox version 3.0.11 or newer, or SeaMonkey version 1.1.17 or newer.
What types of attacks are possible due to CVE-2009-1835?
CVE-2009-1835 can potentially allow attackers to exploit crafted HTML documents to read arbitrary cookies from the victim's browser.
Which versions of Firefox are affected by CVE-2009-1835?
CVE-2009-1835 affects multiple versions of Firefox, including versions earlier than 3.0.11.
Is SeaMonkey affected by CVE-2009-1835?
Yes, SeaMonkey versions prior to 1.1.17 are affected by CVE-2009-1835 and should be updated.