CVE-2014-1589

Publication date

2014-12-11 11:00:00

Family

mozilla

State

PUBLISHED

Description

Mozilla Firefox before 34.0 and SeaMonkey before 2.31 provide stylesheets with an incorrect primary namespace, which allows remote attackers to bypass intended access restrictions via an XBL binding.