SCIENTIFIC-LINUX-ERRATA Archives

March 2011

SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Troy Dawson <[log in to unmask]>
Reply To:
Troy Dawson <[log in to unmask]>
Date:
Wed, 2 Mar 2011 14:47:16 -0600
Content-Type:
text/plain
Parts/Attachments:
text/plain (76 lines)
Synopsis:	Critical: firefox security and bug fix update
Issue date: 2011-03-01
CVE Names: CVE-2010-1585 CVE-2011-0051 CVE-2011-0053
                   CVE-2011-0054 CVE-2011-0055 CVE-2011-0056
                   CVE-2011-0057 CVE-2011-0058 CVE-2011-0059
                   CVE-2011-0061 CVE-2011-0062


A flaw was found in the way Firefox sanitized HTML content in
extensions. If an extension loaded or rendered malicious content using
the ParanoidFragmentSink class, it could fail to safely display the
content, causing Firefox to execute arbitrary JavaScript with the
privileges of the user running Firefox. (CVE-2010-1585)

A flaw was found in the way Firefox handled dialog boxes. An attacker could
use this flaw to create a malicious web page that would present a blank
dialog box that has non-functioning buttons. If a user closes the dialog
box window, it could unexpectedly grant the malicious web page elevated
privileges. (CVE-2011-0051)

Several flaws were found in the processing of malformed web content. A
web page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user
running Firefox. (CVE-2011-0053, CVE-2011-0055, CVE-2011-0058,
CVE-2011-0062)

Several flaws were found in the way Firefox handled malformed
JavaScript. A website containing malicious JavaScript could cause
Firefox to execute that JavaScript with the privileges of the user
running Firefox. (CVE-2011-0054, CVE-2011-0056, CVE-2011-0057)

A flaw was found in the way Firefox handled malformed JPEG images. A
website containing a malicious JPEG image could cause Firefox to crash
or, potentially, execute arbitrary code with the privileges of the user
running Firefox. (CVE-2011-0061)

A flaw was found in the way Firefox handled plug-ins that perform HTTP
requests. If a plug-in performed an HTTP request, and the server sent a
307 redirect response, the plug-in was not notified, and the HTTP
request was forwarded. The forwarded request could contain custom
headers, which could result in a Cross Site Request Forgery attack.
(CVE-2011-0059)

You can find a link to the Mozilla advisories in the References section
of this erratum.

SL 4.x

      SRPMS:
firefox-3.6.14-4.el4.src.rpm
      i386:
firefox-3.6.14-4.el4.i386.rpm
      x86_64:
firefox-3.6.14-4.el4.i386.rpm
firefox-3.6.14-4.el4.x86_64.rpm

SL 5.x

      SRPMS:
firefox-3.6.14-4.el5_6.src.rpm
xulrunner-1.9.2.14-4.el5_6.src.rpm
      i386:
firefox-3.6.14-4.el5_6.i386.rpm
xulrunner-1.9.2.14-4.el5_6.i386.rpm
xulrunner-devel-1.9.2.14-4.el5_6.i386.rpm
      x86_64:
firefox-3.6.14-4.el5_6.i386.rpm
firefox-3.6.14-4.el5_6.x86_64.rpm
xulrunner-1.9.2.14-4.el5_6.i386.rpm
xulrunner-1.9.2.14-4.el5_6.x86_64.rpm
xulrunner-devel-1.9.2.14-4.el5_6.i386.rpm
xulrunner-devel-1.9.2.14-4.el5_6.x86_64.rpm

-Connie Sieh
-Troy Dawson

ATOM RSS1 RSS2