Home CVE Database CVE-2002-2437

CVE-2002-2437

Description

The JavaScript implementation in Mozilla Firefox before 4.0, Thunderbird before 3.3, and SeaMonkey before 2.1 does not properly restrict the set of values contained in the object returned by the getComputedStyle method, which allows remote attackers to obtain sensitive information about visited web pages by calling this method.

Priority: Medium
CVSS v3: 0.0
Publish Date: Dec 7, 2011
Related ID: --
CVSS v2: 5.0
Modified Date: Dec 8, 2011

Find out more about CVE-2002-2437 from the MITRE-CVE dictionary and NIST NVD


Products Affected

Login may be required to access defects or downloads.

Product Name Status Defect Fixed Downloads
Linux
Wind River Linux LTS 17 Not Vulnerable -- -- --
Wind River Linux 9 Not Vulnerable -- -- --
Wind River Linux 8 Not Vulnerable -- -- --
Wind River Linux 7 Not Vulnerable -- -- --
Wind River Linux 6 Not Vulnerable -- -- --
Wind River Linux 5 Not Vulnerable -- -- --
Wind River Linux LTS 18 Not Vulnerable -- -- --
VxWorks
VxWorks 7 Not Vulnerable -- -- --
VxWorks 6.9 Not Vulnerable -- -- --
VxWorks 6.8 Not Vulnerable -- -- --
VxWorks 6.7 Not Vulnerable -- -- --
VxWorks 6.6 Not Vulnerable -- -- --
VxWorks 6.4 Not Vulnerable -- -- --
VxWorks 5.5 Not Vulnerable -- -- --

Related Products

Product name Status
Linux
Linux 7 SCP Investigate
Linux 7 CGP Investigate
Linux 6 SCP Investigate
Linux 6 CGP Not Vulnerable
Linux 5 OVP Not Vulnerable
Linux 5 CGP Not Vulnerable

Comments

WRLinux doesn't ship mozilla firefox.WRLinux doesn't ship mozilla thunderbird.WRLinux doesn't ship mozilla seamonkey.

Live chat
Online