Content-Transfer-Encoding: |
7bit |
Sender: |
|
Subject: |
|
From: |
|
Date: |
Wed, 15 May 2013 14:17:51 +0000 |
MIME-Version: |
1.0 |
Content-Type: |
text/plain; charset="utf-8" |
Reply-To: |
|
Parts/Attachments: |
|
|
Synopsis: Critical: firefox security update
Advisory ID: SLSA-2013:0820-1
Issue Date: 2013-05-14
CVE Numbers: CVE-2013-0801
CVE-2013-1670
CVE-2013-1674
CVE-2013-1675
CVE-2013-1676
CVE-2013-1677
CVE-2013-1678
CVE-2013-1679
CVE-2013-1680
CVE-2013-1681
--
Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user
running Firefox. (CVE-2013-0801, CVE-2013-1674, CVE-2013-1675,
CVE-2013-1676, CVE-2013-1677, CVE-2013-1678, CVE-2013-1679, CVE-2013-1680,
CVE-2013-1681)
A flaw was found in the way Firefox handled Content Level Constructors. A
malicious site could use this flaw to perform cross-site scripting (XSS)
attacks. (CVE-2013-1670)
After installing the update, Firefox must be restarted for the changes to take
effect.
--
SL5
x86_64
firefox-17.0.6-1.el5_9.i386.rpm
firefox-17.0.6-1.el5_9.x86_64.rpm
firefox-debuginfo-17.0.6-1.el5_9.i386.rpm
firefox-debuginfo-17.0.6-1.el5_9.x86_64.rpm
xulrunner-17.0.6-1.el5_9.i386.rpm
xulrunner-17.0.6-1.el5_9.x86_64.rpm
xulrunner-debuginfo-17.0.6-1.el5_9.i386.rpm
xulrunner-debuginfo-17.0.6-1.el5_9.x86_64.rpm
xulrunner-devel-17.0.6-1.el5_9.i386.rpm
xulrunner-devel-17.0.6-1.el5_9.x86_64.rpm
i386
firefox-17.0.6-1.el5_9.i386.rpm
firefox-debuginfo-17.0.6-1.el5_9.i386.rpm
xulrunner-17.0.6-1.el5_9.i386.rpm
xulrunner-debuginfo-17.0.6-1.el5_9.i386.rpm
xulrunner-devel-17.0.6-1.el5_9.i386.rpm
SL6
x86_64
firefox-17.0.6-1.el6_4.i686.rpm
firefox-17.0.6-1.el6_4.x86_64.rpm
firefox-debuginfo-17.0.6-1.el6_4.i686.rpm
firefox-debuginfo-17.0.6-1.el6_4.x86_64.rpm
xulrunner-17.0.6-2.el6_4.i686.rpm
xulrunner-17.0.6-2.el6_4.x86_64.rpm
xulrunner-debuginfo-17.0.6-2.el6_4.i686.rpm
xulrunner-debuginfo-17.0.6-2.el6_4.x86_64.rpm
xulrunner-devel-17.0.6-2.el6_4.i686.rpm
xulrunner-devel-17.0.6-2.el6_4.x86_64.rpm
i386
firefox-17.0.6-1.el6_4.i686.rpm
firefox-debuginfo-17.0.6-1.el6_4.i686.rpm
xulrunner-17.0.6-2.el6_4.i686.rpm
xulrunner-debuginfo-17.0.6-2.el6_4.i686.rpm
xulrunner-devel-17.0.6-2.el6_4.i686.rpm
- Scientific Linux Development Team
|
|
|