Mozilla Firefox 16.0, Thunderbird 16.0, and SeaMonkey 2.13 allow remote attackers to bypass the Same Origin Policy and read the properties of a Location object via a crafted web site, a related issue to CVE-2012-4193.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Firefox | Mozilla | 16.0 (including) | 16.0 (including) |
| Seamonkey | Mozilla | 2.13 (including) | 2.13 (including) |
| Thunderbird | Mozilla | 16.0 (including) | 16.0 (including) |
| Firefox | Ubuntu | devel | * |
| Firefox | Ubuntu | hardy | * |
| Firefox | Ubuntu | lucid | * |
| Firefox | Ubuntu | natty | * |
| Firefox | Ubuntu | oneiric | * |
| Firefox | Ubuntu | precise | * |
| Firefox | Ubuntu | upstream | * |
| Thunderbird | Ubuntu | devel | * |
| Thunderbird | Ubuntu | hardy | * |
| Thunderbird | Ubuntu | upstream | * |