Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Firefox installed and certain URIs registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary commands via shell metacharacters in a (1) FirefoxURL or (2) FirefoxHTML URI, which are inserted into the command line that is created when invoking firefox.exe. NOTE: it has been debated as to whether the issue is in Internet Explorer or Firefox. As of 20070711, it is CVE's opinion that IE appears to be failing to properly delimit the URL argument when invoking Firefox, and this issue could arise with other protocol handlers in IE as well. However, Mozilla has stated that it will address the issue with a "defense in depth" fix that will "prevent IE from sending Firefox malicious data."
References
Link Providers
ftp://ftp.slackware.com/pub/slackware/slackware-12.0/ChangeLog.txt cve-icon cve-icon
http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0160.html cve-icon cve-icon
http://blog.mozilla.com/security/2007/07/10/security-issue-in-url-protocol-handling-on-windows/ cve-icon cve-icon
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742 cve-icon cve-icon
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00774579 cve-icon cve-icon
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=565 cve-icon cve-icon
http://larholm.com/2007/07/10/internet-explorer-0day-exploit/ cve-icon cve-icon
http://msinfluentials.com/blogs/jesper/archive/2007/07/10/blocking-the-firefox-gt-ie-0-day.aspx cve-icon cve-icon
http://osvdb.org/38017 cve-icon cve-icon
http://secunia.com/advisories/25984 cve-icon cve-icon
http://secunia.com/advisories/26096 cve-icon cve-icon
http://secunia.com/advisories/26149 cve-icon cve-icon
http://secunia.com/advisories/26204 cve-icon cve-icon
http://secunia.com/advisories/26216 cve-icon cve-icon
http://secunia.com/advisories/26258 cve-icon cve-icon
http://secunia.com/advisories/26271 cve-icon cve-icon
http://secunia.com/advisories/26572 cve-icon cve-icon
http://secunia.com/advisories/28179 cve-icon cve-icon
http://secunia.com/advisories/28363 cve-icon cve-icon
http://support.novell.com/techcenter/psdb/07d098f99c9fe6956523beae37f32fda.html cve-icon cve-icon
http://www.kb.cert.org/vuls/id/358017 cve-icon cve-icon
http://www.mandriva.com/security/advisories?name=MDKSA-2007:152 cve-icon cve-icon
http://www.mozilla.org/security/announce/2007/mfsa2007-23.html cve-icon cve-icon
http://www.mozilla.org/security/announce/2007/mfsa2007-40.html cve-icon cve-icon
http://www.novell.com/linux/security/advisories/2007_49_mozilla.html cve-icon cve-icon
http://www.securityfocus.com/archive/1/473276/100/0/threaded cve-icon cve-icon
http://www.securityfocus.com/bid/24837 cve-icon cve-icon
http://www.securitytracker.com/id?1018351 cve-icon cve-icon
http://www.securitytracker.com/id?1018360 cve-icon cve-icon
http://www.theregister.co.uk/2007/07/11/ie_firefox_vuln/ cve-icon cve-icon
http://www.ubuntu.com/usn/usn-503-1 cve-icon cve-icon
http://www.us-cert.gov/cas/techalerts/TA07-199A.html cve-icon cve-icon
http://www.virusbtn.com/news/virus_news/2007/07_11.xml cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/2473 cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/2565 cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/4272 cve-icon cve-icon
http://www.vupen.com/english/advisories/2008/0082 cve-icon cve-icon
http://www.xs-sniper.com/sniperscope/IE-Pwns-Firefox.html cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/35346 cve-icon cve-icon
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2007-07-10T19:00:00

Updated: 2024-08-07T14:28:51.407Z

Reserved: 2007-07-10T00:00:00

Link: CVE-2007-3670

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2007-07-10T19:30:00.000

Modified: 2024-11-21T00:33:47.467

Link: CVE-2007-3670

cve-icon Redhat

No data.