Severity: High
ID: 20546
File Name: ubuntu_USN-149-3.nasl
Version: 1.22
Type: local
Agent: unix
Family: Ubuntu Local Security Checks
Published: 1/15/2006
Updated: 1/19/2021
Supported Sensors: Agentless Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus
Risk Factor: Medium
Score: 6.7
Risk Factor: High
Base Score: 7.5
Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P
CPE: p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-dom-inspector, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-locale-ca, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-locale-de, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-locale-es, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-locale-fr, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-locale-it, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-locale-ja, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-locale-nb, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-locale-pl, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-locale-tr, p-cpe:/a:canonical:ubuntu_linux:mozilla-firefox-locale-uk, cpe:/o:canonical:ubuntu_linux:4.10
Required KB Items: Host/cpu, Host/Ubuntu, Host/Ubuntu/release, Host/Debian/dpkg-l
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 7/28/2005
Metasploit (Mozilla Suite/Firefox compareTo() Code Execution)
CVE: CVE-2004-1156, CVE-2004-1381, CVE-2005-0141, CVE-2005-0142, CVE-2005-0143, CVE-2005-0144, CVE-2005-0145, CVE-2005-0146, CVE-2005-0147, CVE-2005-0150, CVE-2005-0230, CVE-2005-0231, CVE-2005-0232, CVE-2005-0233, CVE-2005-0255, CVE-2005-0399, CVE-2005-0401, CVE-2005-0402, CVE-2005-0578, CVE-2005-0584, CVE-2005-0585, CVE-2005-0586, CVE-2005-0587, CVE-2005-0588, CVE-2005-0589, CVE-2005-0590, CVE-2005-0591, CVE-2005-0592, CVE-2005-0593, CVE-2005-0752, CVE-2005-0989, CVE-2005-1153, CVE-2005-1154, CVE-2005-1155, CVE-2005-1156, CVE-2005-1157, CVE-2005-1158, CVE-2005-1159, CVE-2005-1160, CVE-2005-1531, CVE-2005-1532, CVE-2005-1937, CVE-2005-2260, CVE-2005-2261, CVE-2005-2262, CVE-2005-2263, CVE-2005-2264, CVE-2005-2265, CVE-2005-2266, CVE-2005-2267, CVE-2005-2268, CVE-2005-2269, CVE-2005-2270
USN: 149-3