Mozilla Necko, as used in Firefox, SeaMonkey, and other applications, performs DNS prefetching of domain names contained in links within local HTML documents, which makes it easier for remote attackers to determine the network location of the application's user by logging DNS requests. NOTE: the vendor disputes the significance of this issue, stating "I don't think we necessarily need to worry about that case."
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2010-01-29 10:30
Updated : 2010-01-30 21:00
NVD link : CVE-2009-4630
Mitre link : CVE-2009-4630
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
mozilla
- firefox
- seamonkey
- thunderbird