Return to CVE list

CVE-2007-4879

5.0
Medium

CVE-2007-4879

secalert@redhat.com
Modified

Description

Mozilla Firefox before Firefox 2.0.0.13, and SeaMonkey before 1.1.9, can automatically install TLS client certificates with minimal user interaction, and automatically sends these certificates when requested, which makes it easier for remote web sites to track user activities across domains by requesting the TLS client certificates from other domains.

Exploits

No known exploits found for this CVE.

Search Exploit-DB

References

af854a3a-2127-422b-91ae-364da2661108
http://0x90.eu/ff_tls_poc.html
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/29526
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/29539
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/29541
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/29547
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/29558
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/29560
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/29616
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/29645
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/30327
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/30620
af854a3a-2127-422b-91ae-364da2661108
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0128
af854a3a-2127-422b-91ae-364da2661108
http://www.debian.org/security/2008/dsa-1532
af854a3a-2127-422b-91ae-364da2661108
http://www.debian.org/security/2008/dsa-1534
af854a3a-2127-422b-91ae-364da2661108
http://www.debian.org/security/2008/dsa-1535
af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/28448
af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1019704
af854a3a-2127-422b-91ae-364da2661108
http://www.ubuntu.com/usn/usn-592-1
af854a3a-2127-422b-91ae-364da2661108
http://www.us-cert.gov/cas/techalerts/TA08-087A.html
af854a3a-2127-422b-91ae-364da2661108
https://bugzilla.mozilla.org/show_bug.cgi?id=395399