Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 384955

Summary: Mozilla Firefox before 7.0 and SeaMonkey before 2.4 do not properly restrict availability of motion data events, which makes it easier for remote attackers to read keystrokes by leveraging JavaScript code running in a background tab.
Product: Gentoo Security Reporter: daavelino
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED DUPLICATE    
Severity: normal    
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3866
Whiteboard:
Package list:
Runtime testing required: ---

Description daavelino 2011-09-29 16:46:40 UTC
Please check in $URL a list containing all versions affected.
Comment 1 Agostino Sarubbo gentoo-dev 2011-09-29 17:16:10 UTC

*** This bug has been marked as a duplicate of bug 381245 ***
Comment 2 daavelino 2011-09-29 17:25:13 UTC
Why duplicate Ago? 381245 is about DigiNotar, no?
Please, check this

http://www.mozilla.org/security/announce/2011/mfsa2011-45.html

and confirm.