|
Red Hat update for mozilla
|
|
Secunia Advisory:
|
SA15180
|
|
|
Release Date:
|
2005-04-29
|
|
Last Update:
|
2005-05-23
|
|
Popularity:
|
6,490 views
|
|
|
Critical:
|
 Highly critical
|
|
Impact:
|
Security Bypass Cross Site Scripting Spoofing Manipulation of data Exposure of system information Exposure of sensitive information Privilege escalation System access
|
|
Where:
|
From remote
|
|
Solution Status:
|
Vendor Patch
|
|
| OS: | RedHat Enterprise Linux AS 2.1 RedHat Enterprise Linux AS 3 RedHat Enterprise Linux ES 2.1 RedHat Enterprise Linux ES 3 RedHat Enterprise Linux WS 2.1 RedHat Enterprise Linux WS 3 RedHat Linux Advanced Server 2.1 for Itanium RedHat Linux Advanced Workstation 2.1 for Itanium
|
|
|
Subscribe:
|
Instant alerts on relevant vulnerabilities
|
|
| CVE reference: | CVE-2004-1156 CVE-2005-0142 CVE-2005-0143 CVE-2005-0146 CVE-2005-0231 CVE-2005-0232 CVE-2005-0233 CVE-2005-0401 CVE-2005-0527 CVE-2005-0578 CVE-2005-0584 CVE-2005-0585 CVE-2005-0586 CVE-2005-0588 CVE-2005-0590 CVE-2005-0591 CVE-2005-0593 CVE-2005-0989 CVE-2005-1153 CVE-2005-1154 CVE-2005-1155 CVE-2005-1156 CVE-2005-1157 CVE-2005-1159 CVE-2005-1160
|
|
Description: Red Hat has issued an update for mozilla. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain knowledge of sensitive information and perform certain actions on a vulnerable system with escalated privileges and by malicious people to conduct spoofing and cross-site scripting attacks, disclose sensitive and system information, bypass certain security restrictions, trick users into downloading malicious files and compromise a user's system.
For more information:
SA12956
SA13129
SA13258
SA13599
SA14017
SA14160
SA14163
SA14407
SA14684
SA14821
SA14992
Solution: Updated packages are available from Red Hat Network.
http://rhn.redhat.com/
Changelog: 2005-05-23: Vendor has released updated packages. Added RHSA-2005-435.
Original Advisory: http://rhn.redhat.com/errata/RHSA-2005-384.html
http://rhn.redhat.com/errata/RHSA-2005-435.html
Other References: SA12956:
http://secunia.com/advisories/12956/
SA13129:
http://secunia.com/advisories/13129/
SA13258:
http://secunia.com/advisories/13258/
SA13599:
http://secunia.com/advisories/13599/
SA14017:
http://secunia.com/advisories/14017/
SA14160:
http://secunia.com/advisories/14160/
SA14163:
http://secunia.com/advisories/14163/
SA14407:
http://secunia.com/advisories/14407/
SA14684:
http://secunia.com/advisories/14684/
SA14821:
http://secunia.com/advisories/14821/
SA14992:
http://secunia.com/advisories/14992/
|
|
|
Track this Secunia Advisory
|
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.
|
|
|
About this Secunia Advisory
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|