Be sure to check out the Dynaverse.Net Repository, the most comprehensive SFC library around !! ftp.dynaverse.net
0 Members and 1 Guest are viewing this topic.
Fixed in Firefox 1.0.1MFSA 2005-29 Internationalized Domain Name (IDN) homograph spoofingMFSA 2005-28 Unsafe /tmp/plugtmp directory exploitable to erase user's filesMFSA 2005-27 Plugins can be used to load privileged contentMFSA 2005-26 Cross-site scripting by dropping javascript: link on tabMFSA 2005-25 Image drag and drop executable spoofingMFSA 2005-24 HTTP auth prompt tab spoofingMFSA 2005-23 Download dialog source spoofingMFSA 2005-22 Download dialog spoofing using Content-Disposition headerMFSA 2005-21 Overwrite arbitrary files downloading .lnk twiceMFSA 2005-20 XSLT can include stylesheets from arbitrary hostsMFSA 2005-19 Autocomplete data leakMFSA 2005-18 Memory overwrite in string libraryMFSA 2005-17 Install source spoofing with user:pass@hostMFSA 2005-16 Spoofing download and security dialogs with overlapping windowsMFSA 2005-15 Heap overflow possible in UTF8 to Unicode conversionMFSA 2005-14 SSL "secure site" indicator spoofingMFSA 2005-13 Window Injection Spoofing
Full list of fixes.QuoteFixed in Firefox 1.0.1MFSA 2005-29 Internationalized Domain Name (IDN) homograph spoofingMFSA 2005-28 Unsafe /tmp/plugtmp directory exploitable to erase user's filesMFSA 2005-27 Plugins can be used to load privileged contentMFSA 2005-26 Cross-site scripting by dropping javascript: link on tabMFSA 2005-25 Image drag and drop executable spoofingMFSA 2005-24 HTTP auth prompt tab spoofingMFSA 2005-23 Download dialog source spoofingMFSA 2005-22 Download dialog spoofing using Content-Disposition headerMFSA 2005-21 Overwrite arbitrary files downloading .lnk twiceMFSA 2005-20 XSLT can include stylesheets from arbitrary hostsMFSA 2005-19 Autocomplete data leakMFSA 2005-18 Memory overwrite in string libraryMFSA 2005-17 Install source spoofing with user:pass@hostMFSA 2005-16 Spoofing download and security dialogs with overlapping windowsMFSA 2005-15 Heap overflow possible in UTF8 to Unicode conversionMFSA 2005-14 SSL "secure site" indicator spoofingMFSA 2005-13 Window Injection SpoofingDownload Link