Synopsis: Critical: firefox security update Advisory ID: SLSA-2013:0820-1 Issue Date: 2013-05-14 CVE Numbers: CVE-2013-0801 CVE-2013-1670 CVE-2013-1674 CVE-2013-1675 CVE-2013-1676 CVE-2013-1677 CVE-2013-1678 CVE-2013-1679 CVE-2013-1680 CVE-2013-1681 -- Several flaws were found in the processing of malformed web content. A web page containing malicious content could cause Firefox to crash or, potentially, execute arbitrary code with the privileges of the user running Firefox. (CVE-2013-0801, CVE-2013-1674, CVE-2013-1675, CVE-2013-1676, CVE-2013-1677, CVE-2013-1678, CVE-2013-1679, CVE-2013-1680, CVE-2013-1681) A flaw was found in the way Firefox handled Content Level Constructors. A malicious site could use this flaw to perform cross-site scripting (XSS) attacks. (CVE-2013-1670) After installing the update, Firefox must be restarted for the changes to take effect. -- SL5 x86_64 firefox-17.0.6-1.el5_9.i386.rpm firefox-17.0.6-1.el5_9.x86_64.rpm firefox-debuginfo-17.0.6-1.el5_9.i386.rpm firefox-debuginfo-17.0.6-1.el5_9.x86_64.rpm xulrunner-17.0.6-1.el5_9.i386.rpm xulrunner-17.0.6-1.el5_9.x86_64.rpm xulrunner-debuginfo-17.0.6-1.el5_9.i386.rpm xulrunner-debuginfo-17.0.6-1.el5_9.x86_64.rpm xulrunner-devel-17.0.6-1.el5_9.i386.rpm xulrunner-devel-17.0.6-1.el5_9.x86_64.rpm i386 firefox-17.0.6-1.el5_9.i386.rpm firefox-debuginfo-17.0.6-1.el5_9.i386.rpm xulrunner-17.0.6-1.el5_9.i386.rpm xulrunner-debuginfo-17.0.6-1.el5_9.i386.rpm xulrunner-devel-17.0.6-1.el5_9.i386.rpm SL6 x86_64 firefox-17.0.6-1.el6_4.i686.rpm firefox-17.0.6-1.el6_4.x86_64.rpm firefox-debuginfo-17.0.6-1.el6_4.i686.rpm firefox-debuginfo-17.0.6-1.el6_4.x86_64.rpm xulrunner-17.0.6-2.el6_4.i686.rpm xulrunner-17.0.6-2.el6_4.x86_64.rpm xulrunner-debuginfo-17.0.6-2.el6_4.i686.rpm xulrunner-debuginfo-17.0.6-2.el6_4.x86_64.rpm xulrunner-devel-17.0.6-2.el6_4.i686.rpm xulrunner-devel-17.0.6-2.el6_4.x86_64.rpm i386 firefox-17.0.6-1.el6_4.i686.rpm firefox-debuginfo-17.0.6-1.el6_4.i686.rpm xulrunner-17.0.6-2.el6_4.i686.rpm xulrunner-debuginfo-17.0.6-2.el6_4.i686.rpm xulrunner-devel-17.0.6-2.el6_4.i686.rpm - Scientific Linux Development Team