|
 |
|
Gentoo Update for Mozilla Products
|
|
|
|
|
Secunia Advisory:
|
SA30327
|
|
|
Release Date:
|
2008-05-21
|
|
|
Critical:
|

Highly critical
|
|
Impact:
|
Security Bypass Cross Site Scripting Spoofing Exposure of sensitive information DoS System access
|
|
Where:
|
From remote
|
|
Solution Status:
|
Vendor Patch
|
|
| OS: | Gentoo Linux 1.x
|
|
| | CVE reference: | CVE-2007-4879 (Secunia mirror) CVE-2008-0304 (Secunia mirror) CVE-2008-0412 (Secunia mirror) CVE-2008-0413 (Secunia mirror) CVE-2008-0414 (Secunia mirror) CVE-2008-0415 (Secunia mirror) CVE-2008-0416 (Secunia mirror) CVE-2008-0417 (Secunia mirror) CVE-2008-0418 (Secunia mirror) CVE-2008-0419 (Secunia mirror) CVE-2008-0420 (Secunia mirror) CVE-2008-0591 (Secunia mirror) CVE-2008-0592 (Secunia mirror) CVE-2008-0593 (Secunia mirror) CVE-2008-0594 (Secunia mirror) CVE-2008-1233 (Secunia mirror) CVE-2008-1234 (Secunia mirror) CVE-2008-1235 (Secunia mirror) CVE-2008-1236 (Secunia mirror) CVE-2008-1237 (Secunia mirror) CVE-2008-1238 (Secunia mirror) CVE-2008-1240 (Secunia mirror) CVE-2008-1241 (Secunia mirror) CVE-2008-1380 (Secunia mirror)
|
|
|
Want to know the next time vulnerabilities are fixed in this product? - Companies can be alerted via email and SMS! |
|
|
Description: Gentoo has issued updates for mozilla-firefox, mozilla-firefox-bin, seamonkey, seamonkey-bin, mozilla-thunderbird, mozilla-thunderbird-bin, and xulrunner. These fix some weaknesses and vulnerabilities, which can be exploited by malicious people to disclose sensitive information, conduct cross-site scripting attacks, bypass certain security restrictions, conduct spoofing attacks, or to compromise a user's system.
For more information:
SA28758
SA29133
SA29526
SA29787
Solution: Update to a fixed version.
Mozilla Firefox users:
Update to "www-client/mozilla-firefox-2.0.0.14" or later.
Mozilla Firefox binary users:
Update to "www-client/mozilla-firefox-bin-2.0.0.14" or later.
Mozilla Thunderbird users:
Update to "mail-client/mozilla-thunderbird-2.0.0.14" or later.
Mozilla Thunderbird binary users:
Update to "mail-client/mozilla-thunderbird-bin-2.0.0.14" or later.
SeaMonkey users:
Update to "www-client/seamonkey-1.1.9-r1" or later.
SeaMonkey binary users:
Update to "www-client/seamonkey-bin-1.1.9" or later.
XULRunner users:
Update to "net-libs/xulrunner-1.8.1.14" or later.
Original Advisory: http://www.gentoo.org/security/en/glsa/glsa-200805-18.xml
Other References: SA28758:
http://secunia.com/advisories/28758/
SA29133:
http://secunia.com/advisories/29133/
SA29526:
http://secunia.com/advisories/29526/
SA29787:
http://secunia.com/advisories/29787/
|
|
|
|
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|
|
|
|
1409 Related Secunia Security Advisories, displaying 10
|
|
|
1. Gentoo Bacula MySQL Director Password Disclosure Weakness
|
|
2. Gentoo update for peercast
|
|
3. Gentoo BitchX Multiple Vulnerabilities
|
|
4. Gentoo update for mercurial
|
|
5. Gentoo update for bind
|
|
6. Gentoo update for openoffice and openoffice-bin
|
|
7. Gentoo update for apache
|
|
8. Gentoo update for nx
|
|
9. Gentoo update for poppler
|
|
10. Gentoo update for libpcre and glib
|
Show all related advisories
|
|
|
Send Feedback to Secunia
|
|
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.
|
|
|
|

|
 |
Secunia PSI Scan | Patch | Track Free Download
|
|
|
Secunia Poll
|
|
|
|
|
 |
|
|
Most Popular Advisories
|
|
|
|
|
|