+++ This bug was initially created as a clone of Bug #183537 +++ There exists a remotely exploitable code execution vulnerability in Mozilla related to the order tags appear in an HTML document. It is possible for a malicious web page to execute arbitrary code as the user running Firefox. -- Additional comment from bressers on 2006-03-01 16:01 EST -- Created an attachment (id=125496) Proposed upstream patch This patch should apply to aviary 1.0.7 and mozilla 1.7.12
Lifting embargo
(See Bug # 188794 for the FC5 version of this bug report.) This bug was fixed for FC4 in Fedora Update FEDORA-2006-488 <http://www.redhat.com/archives/fedora-package-announce/2006-May/msg00019.html>. This bug was fixed for FC5 in Fedora Update FEDORA-2006-487 <http://www.redhat.com/archives/fedora-package-announce/2006-May/msg00018.html>.