Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3435 (browser_toolbar)

BugsAlert Home > CVE-2008-3435 (browser_toolbar)
 
 

LinkedIn Browser Toolbar 3.0.3.1100 and earlier does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a Trojan horse update, as demonstrated by evilgrade and DNS cache poisoning.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3435

Learn more about CVE-2008-3435 (browser_toolbar)
 
Tags: cve-2008-3435 browser toolbar

Related Items

      WORM_DREFIR.C

      Bugtraq: Cisco Security Advisory: CiscoWorks Internetwork Performance Monitor Remote Command Execution Vulnerability

      CVE-2008-4368 (mac_os_x)

      i.Scribe Format String Vulnerability

      TYPO3 sg_zfelib Extension SQL Injection Vulnerabilities

      CVE-2008-2322 (coregraphics)

      FrSIRT - SuSE Security Update Fixes xorg-x11 Privilege Escalation Issues

 

Pixel