HTTP: About Local Link Exploit (JS)
This signature detects attempts to exploit a known vulnerability in Web browsers that support the "about:" URI scheme within a script. Attackers can use this technique in combination with other browser exploits to elevate an attack into a trusted security zone (such as Local Computer).
Extended Description
Mozilla Browser/Firefox are prone to a potential arbitrary code-execution weakness. Specifically, an attacker can load privileged 'chrome' pages from an unprivileged 'about:' page. This issue does not pose a threat unless it is combined with a same-origin violation issue. If successfully exploited, this issue may allow a remote attacker to execute arbitrary code and gain unauthorized remote access to a computer. This would occur in the context of the user running the browser.
Affected Products
Mozilla thunderbird
References
BugTraq: 14920
CVE: CVE-2005-2706
URL: http://www.mozilla.org/security/announce/mfsa2005-58.html#about
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Red_hat
Conectiva
Suse
Gentoo
Mozilla
Turbolinux
Netscape
Sgi
Slackware
Ubuntu
Mandriva
Debian
6.4