CVE Vulnerabilities

CVE-2010-0169

Published: Mar 25, 2010 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
4.3 LOW
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V3
Ubuntu
MEDIUM

The CSSLoaderImpl::DoSheetComplete function in layout/style/nsCSSLoader.cpp in Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 changes the case of certain strings in a stylesheet before adding this stylesheet to the XUL cache, which might allow remote attackers to modify the browsers font and other CSS attributes, and potentially disrupt rendering of a web page, by forcing the browser to perform this erroneous stylesheet caching.

Affected Software

Name Vendor Start Version End Version
Firefox Mozilla 3.0 (including) 3.0 (including)
Firefox Mozilla 3.0.1 (including) 3.0.1 (including)
Firefox Mozilla 3.0.10 (including) 3.0.10 (including)
Firefox Mozilla 3.0.11 (including) 3.0.11 (including)
Firefox Mozilla 3.0.12 (including) 3.0.12 (including)
Firefox Mozilla 3.0.13 (including) 3.0.13 (including)
Firefox Mozilla 3.0.14 (including) 3.0.14 (including)
Firefox Mozilla 3.0.15 (including) 3.0.15 (including)
Firefox Mozilla 3.0.16 (including) 3.0.16 (including)
Firefox Mozilla 3.0.17 (including) 3.0.17 (including)
Firefox Mozilla 3.5 (including) 3.5 (including)
Firefox Mozilla 3.5.1 (including) 3.5.1 (including)
Firefox Mozilla 3.5.2 (including) 3.5.2 (including)
Firefox Mozilla 3.5.3 (including) 3.5.3 (including)
Firefox Mozilla 3.5.4 (including) 3.5.4 (including)
Firefox Mozilla 3.5.5 (including) 3.5.5 (including)
Firefox Mozilla 3.5.6 (including) 3.5.6 (including)
Firefox Mozilla 3.5.7 (including) 3.5.7 (including)
Firefox Mozilla 3.6 (including) 3.6 (including)
Seamonkey Mozilla * 2.0.2 (including)
Seamonkey Mozilla 1.1 (including) 1.1 (including)
Seamonkey Mozilla 1.1-alpha (including) 1.1-alpha (including)
Seamonkey Mozilla 1.1-beta (including) 1.1-beta (including)
Seamonkey Mozilla 1.1.1 (including) 1.1.1 (including)
Seamonkey Mozilla 1.1.2 (including) 1.1.2 (including)
Seamonkey Mozilla 1.1.3 (including) 1.1.3 (including)
Seamonkey Mozilla 1.1.4 (including) 1.1.4 (including)
Seamonkey Mozilla 1.1.5 (including) 1.1.5 (including)
Seamonkey Mozilla 1.1.5-1.1.10 (including) 1.1.5-1.1.10 (including)
Seamonkey Mozilla 1.1.6 (including) 1.1.6 (including)
Seamonkey Mozilla 1.1.7 (including) 1.1.7 (including)
Seamonkey Mozilla 1.1.8 (including) 1.1.8 (including)
Seamonkey Mozilla 1.1.9 (including) 1.1.9 (including)
Seamonkey Mozilla 1.1.10 (including) 1.1.10 (including)
Seamonkey Mozilla 1.1.11 (including) 1.1.11 (including)
Seamonkey Mozilla 1.1.12 (including) 1.1.12 (including)
Seamonkey Mozilla 1.1.13 (including) 1.1.13 (including)
Seamonkey Mozilla 1.1.14 (including) 1.1.14 (including)
Seamonkey Mozilla 1.1.15 (including) 1.1.15 (including)
Seamonkey Mozilla 1.1.16 (including) 1.1.16 (including)
Seamonkey Mozilla 1.1.17 (including) 1.1.17 (including)
Seamonkey Mozilla 1.1.18 (including) 1.1.18 (including)
Seamonkey Mozilla 1.1.19 (including) 1.1.19 (including)
Seamonkey Mozilla 2.0 (including) 2.0 (including)
Seamonkey Mozilla 2.0-alpha_1 (including) 2.0-alpha_1 (including)
Seamonkey Mozilla 2.0-alpha_2 (including) 2.0-alpha_2 (including)
Seamonkey Mozilla 2.0-alpha_3 (including) 2.0-alpha_3 (including)
Seamonkey Mozilla 2.0-beta_1 (including) 2.0-beta_1 (including)
Seamonkey Mozilla 2.0-beta_2 (including) 2.0-beta_2 (including)
Seamonkey Mozilla 2.0-rc1 (including) 2.0-rc1 (including)
Seamonkey Mozilla 2.0-rc2 (including) 2.0-rc2 (including)
Seamonkey Mozilla 2.0.1 (including) 2.0.1 (including)
Thunderbird Mozilla * 3.0.1 (including)
Thunderbird Mozilla 1.5 (including) 1.5 (including)
Thunderbird Mozilla 1.5-beta2 (including) 1.5-beta2 (including)
Thunderbird Mozilla 1.5.0.1 (including) 1.5.0.1 (including)
Thunderbird Mozilla 1.5.0.2 (including) 1.5.0.2 (including)
Thunderbird Mozilla 1.5.0.3 (including) 1.5.0.3 (including)
Thunderbird Mozilla 1.5.0.4 (including) 1.5.0.4 (including)
Thunderbird Mozilla 1.5.0.5 (including) 1.5.0.5 (including)
Thunderbird Mozilla 1.5.0.6 (including) 1.5.0.6 (including)
Thunderbird Mozilla 1.5.0.7 (including) 1.5.0.7 (including)
Thunderbird Mozilla 1.5.0.8 (including) 1.5.0.8 (including)
Thunderbird Mozilla 1.5.0.9 (including) 1.5.0.9 (including)
Thunderbird Mozilla 1.5.0.10 (including) 1.5.0.10 (including)
Thunderbird Mozilla 1.5.0.11 (including) 1.5.0.11 (including)
Thunderbird Mozilla 1.5.0.12 (including) 1.5.0.12 (including)
Thunderbird Mozilla 1.5.0.13 (including) 1.5.0.13 (including)
Thunderbird Mozilla 1.5.0.14 (including) 1.5.0.14 (including)
Thunderbird Mozilla 1.5.1 (including) 1.5.1 (including)
Thunderbird Mozilla 1.5.2 (including) 1.5.2 (including)
Thunderbird Mozilla 2.0.0.0 (including) 2.0.0.0 (including)
Thunderbird Mozilla 2.0.0.3 (including) 2.0.0.3 (including)
Thunderbird Mozilla 2.0.0.4 (including) 2.0.0.4 (including)
Thunderbird Mozilla 2.0.0.5 (including) 2.0.0.5 (including)
Thunderbird Mozilla 2.0.0.6 (including) 2.0.0.6 (including)
Thunderbird Mozilla 2.0.0.7 (including) 2.0.0.7 (including)
Thunderbird Mozilla 2.0.0.8 (including) 2.0.0.8 (including)
Thunderbird Mozilla 2.0.0.9 (including) 2.0.0.9 (including)
Thunderbird Mozilla 2.0.0.12 (including) 2.0.0.12 (including)
Thunderbird Mozilla 2.0.0.14 (including) 2.0.0.14 (including)
Thunderbird Mozilla 2.0.0.16 (including) 2.0.0.16 (including)
Thunderbird Mozilla 2.0.0.17 (including) 2.0.0.17 (including)
Thunderbird Mozilla 2.0.0.18 (including) 2.0.0.18 (including)
Thunderbird Mozilla 2.0.0.19 (including) 2.0.0.19 (including)
Red Hat Enterprise Linux 3 RedHat seamonkey-0:1.0.9-0.50.el3 *
Red Hat Enterprise Linux 4 RedHat firefox-0:3.0.18-1.el4 *
Red Hat Enterprise Linux 4 RedHat seamonkey-0:1.0.9-52.el4_8 *
Red Hat Enterprise Linux 4 RedHat thunderbird-0:1.5.0.12-25.el4 *
Red Hat Enterprise Linux 5 RedHat firefox-0:3.0.18-1.el5_4 *
Red Hat Enterprise Linux 5 RedHat xulrunner-0:1.9.0.18-1.el5_4 *
Red Hat Enterprise Linux 5 RedHat thunderbird-0:2.0.0.24-2.el5_4 *
Firefox Ubuntu dapper *
Firefox Ubuntu devel *
Firefox Ubuntu lucid *
Firefox Ubuntu maverick *
Firefox Ubuntu natty *
Firefox Ubuntu upstream *
Seamonkey Ubuntu hardy *
Seamonkey Ubuntu intrepid *
Seamonkey Ubuntu jaunty *
Seamonkey Ubuntu karmic *
Seamonkey Ubuntu lucid *
Seamonkey Ubuntu upstream *
Thunderbird Ubuntu devel *
Thunderbird Ubuntu hardy *
Thunderbird Ubuntu jaunty *
Thunderbird Ubuntu karmic *
Thunderbird Ubuntu lucid *
Thunderbird Ubuntu maverick *
Thunderbird Ubuntu natty *
Thunderbird Ubuntu upstream *
Xulrunner-1.9 Ubuntu hardy *
Xulrunner-1.9 Ubuntu intrepid *
Xulrunner-1.9 Ubuntu jaunty *
Xulrunner-1.9 Ubuntu upstream *
Xulrunner-1.9.1 Ubuntu jaunty *
Xulrunner-1.9.1 Ubuntu karmic *
Xulrunner-1.9.1 Ubuntu upstream *

References