[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2009:134 -- Mandriva firefox

ID: oval:org.secpod.oval:def:300950Date: (C)2012-01-07   (M)2024-02-08
Class: PATCHFamily: unix




Security vulnerabilities have been discovered and corrected in Mozilla Firefox 3.x: CVE-2009-1392: Firefox browser engine crashes CVE-2009-1832: Firefox double frame construction flaw CVE-2009-1833: Firefox JavaScript engine crashes CVE-2009-1834: Firefox URL spoofing with invalid unicode characters CVE-2009-1835: Firefox Arbitrary domain cookie access by local file: resources CVE-2009-1836: Firefox SSL tampering via non-200 responses to proxy CONNECT requests CVE-2009-1837: Firefox Race condition while accessing the private data of a NPObject JS wrapper class object CVE-2009-1838: Firefox arbitrary code execution flaw CVE-2009-1839: Firefox information disclosure flaw CVE-2009-1840: Firefox XUL scripts skip some security checks CVE-2009-1841: Firefox JavaScript arbitrary code execution CVE-2009-2043: firefox - remote TinyMCE denial of service CVE-2009-2044: firefox - remote GIF denial of service CVE-2009-2061: firefox - man-in-the-middle exploit CVE-2009-2065: firefox - man-in-the-middle exploit This update provides the latest Mozilla Firefox 3.x to correct these issues. Additionally, some packages which require so, have been rebuilt and are being provided as updates.

Platform:
Mandriva Linux 2009.0
Mandriva Linux 2009.1
Product:
firefox
Reference:
MDVSA-2009:134
CVE-2009-2065
CVE-2009-2061
CVE-2009-2044
CVE-2009-2043
CVE-2009-1841
CVE-2009-1840
CVE-2009-1839
CVE-2009-1838
CVE-2009-1837
CVE-2009-1836
CVE-2009-1835
CVE-2009-1834
CVE-2009-1833
CVE-2009-1392
CVE-2009-1832
CVE    15
CVE-2009-1839
CVE-2009-1835
CVE-2009-1837
CVE-2009-1833
...
CPE    2
cpe:/o:mandriva:linux:2009.0
cpe:/o:mandriva:linux:2009.1

© SecPod Technologies