CVE-2004-0764

Mozilla Firefox < 0.9 and Mozilla < 1.7 - User Interface Hijacking via Chrome Flag and XUL Files

Title source: llm
STIX 2.1

Description

Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote web sites to hijack the user interface via the "chrome" flag and XML User Interface Language (XUL) files.

References (13)

Core 13
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/12188
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/16837
Various Sources vendor-advisory x_refsource_sco
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.49/SCOSA-2005.49.txt
Vendor Advisory vendor-advisory x_refsource_suse
http://www.novell.com/linux/security/advisories/2004_36_mozilla.html
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2004-421.html
Mailing List vendor-advisory x_refsource_fedora
http://marc.info/?l=bugtraq&m=109900315219363&w=2
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2418
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/15495
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/262350
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/10832
Patch, Vendor Advisory x_refsource_confirm
http://bugzilla.mozilla.org/show_bug.cgi?id=244965
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9419

Scores

EPSS 0.0323
EPSS Percentile 86.9%

Details

Status published
Products (3)
mozilla/firefox < 0.9
mozilla/mozilla < 1.7
mozilla/thunderbird < 0.7
Published Aug 18, 2004
Tracked Since Feb 18, 2026