|
|
|
|
HP-UX update for thunderbird
|
|
Secunia Advisory:
|
SA22065
|
|
|
Release Date:
|
2006-09-22
|
|
Last Update:
|
2007-09-03
|
|
Popularity:
|
7,207 views
|
|
|
Critical:
|
 Highly critical
|
|
Impact:
|
Security Bypass Cross Site Scripting Spoofing Exposure of system information Exposure of sensitive information DoS System access
|
|
Where:
|
From remote
|
|
Solution Status:
|
Partial Fix
|
|
| OS: | HP-UX 11.x
|
|
|
Subscribe:
|
Instant alerts on relevant vulnerabilities
|
| | CVE reference: | CVE-2006-0292 CVE-2006-0293 CVE-2006-0294 CVE-2006-0295 CVE-2006-0296 CVE-2006-0297 CVE-2006-0298 CVE-2006-0299 CVE-2006-0748 CVE-2006-0884 CVE-2006-1045 CVE-2006-1724 CVE-2006-1726 CVE-2006-1727 CVE-2006-1728 CVE-2006-1730 CVE-2006-2775 CVE-2006-2776 CVE-2006-2778 CVE-2006-2779 CVE-2006-2780 CVE-2006-2781 CVE-2006-2783 CVE-2006-2786 CVE-2006-2787 CVE-2006-3113 CVE-2006-3801 CVE-2006-3802 CVE-2006-3803 CVE-2006-3804 CVE-2006-3805 CVE-2006-3806 CVE-2006-3807 CVE-2006-3808 CVE-2006-3809 CVE-2006-3810 CVE-2006-3811 CVE-2006-4253 CVE-2006-4340 CVE-2006-4565 CVE-2006-4566 CVE-2006-4567 CVE-2006-4570 CVE-2006-4571 CVE-2006-5462 CVE-2006-5463 CVE-2006-5464 CVE-2006-5747 CVE-2006-5748 CVE-2006-6497 CVE-2006-6498 CVE-2006-6499 CVE-2006-6500 CVE-2006-6501 CVE-2006-6502 CVE-2006-6503 CVE-2006-6504 CVE-2006-6505
|
|
Description: HP has issued an update for thunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, gain knowledge of potentially sensitive information, conduct cross-site scripting, HTTP response smuggling, and phishing attacks, or compromise a user's system.
For more information:
SA18704
SA20382
SA21228
SA21939
SA22770
SA23420
Solution: Install preliminary versions of Thunderbird 1.5.0.9:
ftp://ftp.mozilla.org/pub/mozilla.org/thunderbird/releases/1.5.0.9/contrib/
For HP-UX B.11.23 and B.11.31 (IA):
thunderbird_1.5.0.9_ia.depot.gz
thunderbird_1.5.0.9_ia.depot.gz.readme
For HP-UX B.11.11, B.11.23, and B.11.31 (PA):
thunderbird_1.5.0.9_pa.depot.gz
thunderbird_1.5.0.9_pa.depot.gz.readme
Changelog: 2007-03-22: Updated "Solution Section" to replace version 1.5.0.5 to 1.5.0.9 based on new information from HP.
2007-09-03: Updated "Solution Section" to include HP-UX B.11.31. Added additional links and CVE references.
Original Advisory: HPSBUX02156 SSRT061236:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00774579
Other References: SA18704:
http://secunia.com/advisories/18704/
SA20382:
http://secunia.com/advisories/20382/
SA21228:
http://secunia.com/advisories/21228/
SA21939:
http://secunia.com/advisories/21939/
SA22770:
http://secunia.com/advisories/22770/
SA23420:
http://secunia.com/advisories/23420/
|
|
|
Track this Secunia Advisory
|
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.
|
|
|
About this Secunia Advisory
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|
|
|
Today
|
New advisories:
|
2 |
|
New vulnerabilities:
|
14 |
|
Updated advisories:
|
3 |
|
|
|
|
|
|
|
7th Oct, 2008
|
New advisories:
|
19 |
|
New vulnerabilities:
|
68 |
|
Updated advisories:
|
61 |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Solutions | More...
|
|
|
|
Send Feedback to Secunia
|
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.
|
|
|
|
|
|
|