CVE-2014-1539
11.06.2014, 10:57
Mozilla Firefox before 30.0 and Thunderbird through 24.6 on OS X do not ensure visibility of the cursor after interaction with a Flash object and a DIV element, which makes it easier for remote attackers to conduct clickjacking attacks via JavaScript code that produces a fake cursor image.Enginsight
| Vendor | Product | Version |
|---|---|---|
| mozilla | firefox | 𝑥 ≤ 29.0.1 |
| mozilla | thunderbird | 𝑥 ≤ 24.6 |
| mozilla | thunderbird | 24.0 |
| mozilla | thunderbird | 24.0.1 |
| mozilla | thunderbird | 24.1 |
| mozilla | thunderbird | 24.1.1 |
| mozilla | thunderbird | 24.2 |
| mozilla | thunderbird | 24.3 |
| mozilla | thunderbird | 24.4 |
| mozilla | thunderbird | 24.5 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References