Secunia Logo
Netsikker nu! 2008
 
Mandriva update for mozilla
Secunia Advisory: SA15367
Release Date: 2005-05-16
Popularity: 5,530 views

Critical:
Highly critical
Impact: Security Bypass
Cross Site Scripting
Manipulation of data
Exposure of sensitive information
System access
Where: From remote
Solution Status: Vendor Patch

OS:Mandrakelinux 10.0
Mandrakelinux 10.1

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2005-0989
CVE-2005-0752
CVE-2005-1153
CVE-2005-1154
CVE-2005-1155
CVE-2005-1156
CVE-2005-1158
CVE-2005-1159
CVE-2005-1160
CVE-2005-1477
CVE-2005-0401
CVE-2005-0527


Description:
Mandriva has issued updates for mozilla. These fix some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain security restrictions, gain knowledge of potentially sensitive information and compromise a user's system.

For more information:
SA14820
SA14821
SA14938
SA14992
SA14684
SA14160

Solution:
Apply updated packages.

Mandrakelinux 10.1

b3c4d6b408121c1696e860eaf139ac17 10.1/RPMS/epiphany-1.2.8-4.2.101mdk.i586.rpm
87449a5b8d95ec5038842d794e6ae7a4 10.1/RPMS/epiphany-devel-1.2.8-4.2.101mdk.i586.rpm
cc55f2b32db3a925a31d0e8f7bae475a 10.1/RPMS/galeon-1.3.17-3.2.101mdk.i586.rpm
9f15765b7ed59d295864c47672768f85 10.1/RPMS/libnspr4-1.7.2-12.2.101mdk.i586.rpm
c24d1485007b9d05b4ee1936e6157dcc 10.1/RPMS/libnspr4-devel-1.7.2-12.2.101mdk.i586.rpm
e936fa7fc9e9956bb25b5a096f049d8a 10.1/RPMS/libnss3-1.7.2-12.2.101mdk.i586.rpm
357f36e151a0ae8d3c090573874d5ce5 10.1/RPMS/libnss3-devel-1.7.2-12.2.101mdk.i586.rpm
d0830c67ddcdf8b37a53cd39e497cd88 10.1/RPMS/mozilla-1.7.2-12.2.101mdk.i586.rpm
61b60f30c676d451709f4afcbdb8ab70 10.1/RPMS/mozilla-devel-1.7.2-12.2.101mdk.i586.rpm
97914412759faccc7d2cbaea2a66aabc 10.1/RPMS/mozilla-dom-inspector-1.7.2-12.2.101mdk.i586.rpm
0d919875e79250522fb0067b832eb299 10.1/RPMS/mozilla-enigmail-1.7.2-12.2.101mdk.i586.rpm
ff42754f66787c540b3ad17a7b06e399 10.1/RPMS/mozilla-enigmime-1.7.2-12.2.101mdk.i586.rpm
56ec1c9a61ce42af78ded3f255bfe837 10.1/RPMS/mozilla-irc-1.7.2-12.2.101mdk.i586.rpm
e14ba88b79f6525030f948103ae0a716 10.1/RPMS/mozilla-js-debugger-1.7.2-12.2.101mdk.i586.rpm
922e6a2c2aebb4ca7673b081c0027a6f 10.1/RPMS/mozilla-mail-1.7.2-12.2.101mdk.i586.rpm
dc3783bc550ad9a5190c44598281d604 10.1/RPMS/mozilla-spellchecker-1.7.2-12.2.101mdk.i586.rpm
fb95936e6542a9b742c2b655916d7ded 10.1/SRPMS/epiphany-1.2.8-4.2.101mdk.src.rpm
e88e547cbd1a17ba6c1beba66d9d73b1 10.1/SRPMS/galeon-1.3.17-3.2.101mdk.src.rpm
8f37c650c202e94a416272d4ea8c4500 10.1/SRPMS/mozilla-1.7.2-12.2.101mdk.src.rpm

Mandrakelinux 10.1/X86_64

f23f3e2ea31308ddbfc0c7c81beb3cb6 x86_64/10.1/RPMS/epiphany-1.2.8-4.2.101mdk.x86_64.rpm
c65413cb7cbdcb568e1dc9af59f6778c x86_64/10.1/RPMS/epiphany-devel-1.2.8-4.2.101mdk.x86_64.rpm
22da554c0181d9d26376b07fac329749 x86_64/10.1/RPMS/galeon-1.3.17-3.2.101mdk.x86_64.rpm
31b4e24da450171995e45a80bd5c7def x86_64/10.1/RPMS/lib64nspr4-1.7.2-12.2.101mdk.x86_64.rpm
c54cd3b1d5367dc118e9bd7703ceea4b x86_64/10.1/RPMS/lib64nspr4-devel-1.7.2-12.2.101mdk.x86_64.rpm
05d58ffce6c8d7e98b9e2a987ba96a69 x86_64/10.1/RPMS/lib64nss3-1.7.2-12.2.101mdk.x86_64.rpm
8fa07eca2df677de6847640db775e486 x86_64/10.1/RPMS/lib64nss3-devel-1.7.2-12.2.101mdk.x86_64.rpm
9f15765b7ed59d295864c47672768f85 x86_64/10.1/RPMS/libnspr4-1.7.2-12.2.101mdk.i586.rpm
e936fa7fc9e9956bb25b5a096f049d8a x86_64/10.1/RPMS/libnss3-1.7.2-12.2.101mdk.i586.rpm
f505404f493d4de6dc48c8ae40598a7c x86_64/10.1/RPMS/mozilla-1.7.2-12.2.101mdk.x86_64.rpm
3380d33ab5f3118987fe1b38cb3685d2 x86_64/10.1/RPMS/mozilla-devel-1.7.2-12.2.101mdk.x86_64.rpm
281f743c9af8d4082c9154fda36e79e6 x86_64/10.1/RPMS/mozilla-dom-inspector-1.7.2-12.2.101mdk.x86_64.rpm
e1828b71e9f57a730d1966277b6384ad x86_64/10.1/RPMS/mozilla-enigmail-1.7.2-12.2.101mdk.x86_64.rpm
3b95ba000a3f2d8a029d57784a3b9b1a x86_64/10.1/RPMS/mozilla-enigmime-1.7.2-12.2.101mdk.x86_64.rpm
195989fdbedecaff963783515fb2b1fb x86_64/10.1/RPMS/mozilla-irc-1.7.2-12.2.101mdk.x86_64.rpm
184ed89834f4c90b7b9239a783a1875a x86_64/10.1/RPMS/mozilla-js-debugger-1.7.2-12.2.101mdk.x86_64.rpm
6b21577a9de375cff96fc39611a618a9 x86_64/10.1/RPMS/mozilla-mail-1.7.2-12.2.101mdk.x86_64.rpm
500945687fac07ae26ca67e1708e173d x86_64/10.1/RPMS/mozilla-spellchecker-1.7.2-12.2.101mdk.x86_64.rpm
fb95936e6542a9b742c2b655916d7ded x86_64/10.1/SRPMS/epiphany-1.2.8-4.2.101mdk.src.rpm
e88e547cbd1a17ba6c1beba66d9d73b1 x86_64/10.1/SRPMS/galeon-1.3.17-3.2.101mdk.src.rpm
8f37c650c202e94a416272d4ea8c4500 x86_64/10.1/SRPMS/mozilla-1.7.2-12.2.101mdk.src.rpm

Original Advisory:
http://www.mandriva.com/security/advisories?name=MDKSA-2005:088

Other References:
SA14820:
http://secunia.com/advisories/14820

SA14821:
http://secunia.com/advisories/14821

SA14938:
http://secunia.com/advisories/14938

SA14992:
http://secunia.com/advisories/14992

SA14684:
http://secunia.com/advisories/14684

SA14160:
http://secunia.com/advisories/14160


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Today
New advisories: 19
New vulnerabilities: 68
Updated advisories: 62

Moderately // 181 views
Debian update for php5
Moderately // 133 views
Atarone CMS Multiple Vulnerabilities
Moderately // 172 views
Debian update for squid
Less // 184 views
SUSE update for mercurial
Moderately // 228 views
SUSE update for openssh
Less // 173 views
Fedora update for mediawiki

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Debian update for php5 // 63 views
2. SUSE update for openssh // 56 views
3. H-Sphere webshell4 Cross-Site Scripting and Request Forgery // 41 views
4. Juniper Products Neighbor Discovery Protocol Neighbor Solicitation Vulnerability // 41 views
5. SUSE update for mercurial // 39 views
6. Atarone CMS Multiple Vulnerabilities // 34 views
7. WMNews Cross-Site Scripting Vulnerabilities // 33 views
8. MetaGauge Directory Traversal Vulnerability // 33 views
9. SUSE update for dovecot and graphicsmagic // 33 views
10. HP-UX NFS/ONCplus Denial of Service Vulnerability // 31 views