Mozilla Firefox before 2.0.0.5 allows remote attackers to execute arbitrary code with chrome privileges by calling an event handler from an unspecified "element outside of a document."Referenceshttp://www.ubuntu.com/usn/usn-490-1http://secunia.com/advisories/26107http://secunia.com/advisories/26179http://www.vupen.com/english/advisories/2007/4256http://secunia.com/advisories/25589http://www.securitytracker.com/id?1018409http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742http://www.mandriva.com/security/advisories?name=MDKSA-2007:152http://www.gentoo.org/security/en/glsa/glsa-200708-09.xmlhttp://www.debian.org/security/2007/dsa-1339http://www.mozilla.org/security/announce/2007/mfsa2007-21.htmlhttp://secunia.com/advisories/26151http://secunia.com/advisories/28135http://secunia.com/advisories/26216https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10009http://secunia.com/advisories/26103http://secunia.com/advisories/26072http://secunia.com/advisories/26149http://sunsolve.sun.com/search/document.do?assetkey=1-26-103177-1http://www.vupen.com/english/advisories/2007/2564http://www.debian.org/security/2007/dsa-1337http://secunia.com/advisories/26211http://secunia.com/advisories/26159http://www.novell.com/linux/security/advisories/2007_49_mozilla.htmlhttp://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742http://www.debian.org/security/2007/dsa-1338ftp://ftp.slackware.com/pub/slackware/slackware-12.0/ChangeLog.txthttps://exchange.xforce.ibmcloud.com/vulnerabilities/35461http://support.novell.com/techcenter/psdb/07d098f99c9fe6956523beae37f32fda.htmlhttp://secunia.com/advisories/26095http://www.securityfocus.com/archive/1/474542/100/0/threadedhttp://secunia.com/advisories/26258http://www.securityfocus.com/bid/24946http://secunia.com/advisories/26460http://secunia.com/advisories/26106ftp://patches.sgi.com/support/free/security/advisories/20070701-01-P.aschttp://www.redhat.com/support/errata/RHSA-2007-0724.htmlhttp://www.securityfocus.com/archive/1/474226/100/0/threadedhttp://www.redhat.com/support/errata/RHSA-2007-0723.htmlhttp://secunia.com/advisories/26271http://www.redhat.com/support/errata/RHSA-2007-0722.htmlhttp://sunsolve.sun.com/search/document.do?assetkey=1-66-201516-1http://secunia.com/advisories/26204http://secunia.com/advisories/26205