Synopsis:    Moderate: seamonkey security update
Issue Date:  2011-11-08
CVE Numbers: CVE-2011-3648


SeaMonkey is an open source web browser, email and newsgroup client, IRC
chat client, and HTML editor.

A cross-site scripting (XSS) flaw was found in the way SeaMonkey handled
certain multibyte character sets. A web page containing malicious content
could cause SeaMonkey to run JavaScript code with the permissions of a
different website. (CVE-2011-3648)
 
All SeaMonkey users should upgrade to these updated packages, which correct
this issue. After installing the update, SeaMonkey must be restarted for
the changes to take effect.

SL4:
  i386
     seamonkey-1.0.9-77.el4.i386.rpm
     seamonkey-chat-1.0.9-77.el4.i386.rpm
     seamonkey-debuginfo-1.0.9-77.el4.i386.rpm
     seamonkey-devel-1.0.9-77.el4.i386.rpm
     seamonkey-dom-inspector-1.0.9-77.el4.i386.rpm
     seamonkey-js-debugger-1.0.9-77.el4.i386.rpm
     seamonkey-mail-1.0.9-77.el4.i386.rpm
  x86_64
     seamonkey-1.0.9-77.el4.x86_64.rpm
     seamonkey-chat-1.0.9-77.el4.x86_64.rpm
     seamonkey-debuginfo-1.0.9-77.el4.x86_64.rpm
     seamonkey-devel-1.0.9-77.el4.x86_64.rpm
     seamonkey-dom-inspector-1.0.9-77.el4.x86_64.rpm
     seamonkey-js-debugger-1.0.9-77.el4.x86_64.rpm
     seamonkey-mail-1.0.9-77.el4.x86_64.rpm

- Scientific Linux Development Team