CVE-2007-3285
Publication date 20 June 2007
Last updated 24 July 2024
Ubuntu priority
Mozilla Firefox before 2.0.0.5, when run on Windows, allows remote attackers to bypass file type checks and possibly execute programs via a (1) file:/// or (2) resource: URI with a dangerous extension, followed by a NULL byte (%00) and a safer extension, which causes Firefox to treat the requested file differently than Windows would.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | ||
iceape | ||
midbrowser | ||