Visual truncation vulnerability in the MakeScriptDialogTitle function in nsGlobalWindow.cpp in Mozilla Firefox allows remote attackers to spoof the origin domain name of a script via a long name.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Firefox | Mozilla | * | * |
Xulrunner-1.9.1 | Ubuntu | devel | * |
Xulrunner-1.9.1 | Ubuntu | jaunty | * |
Xulrunner-1.9.1 | Ubuntu | karmic | * |
Xulrunner-1.9.1 | Ubuntu | upstream | * |