Secunia Logo
Netsikker nu! 2008
 
SUSE update for MozillaFirefox, MozillaThunderbird, and Seamonkey
Secunia Advisory: SA21529
Release Date: 2006-08-17
Popularity: 6,446 views

Critical:
Highly critical
Impact: Cross Site Scripting
DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:SUSE Linux 10
SUSE Linux 10.1
SUSE Linux 9.2
SUSE Linux 9.3

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2006-3113
CVE-2006-3677
CVE-2006-3801
CVE-2006-3802
CVE-2006-3803
CVE-2006-3804
CVE-2006-3805
CVE-2006-3806
CVE-2006-3807
CVE-2006-3808
CVE-2006-3809
CVE-2006-3810
CVE-2006-3811
CVE-2006-3812


Description:
SUSE has issued an update for MozillaFirefox, MozillaThunderbird and Seamonkey. These fix some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks and compromise a user's system.

For more information:
SA19873
SA21228
SA21229

Solution:
Apply updated packages.

x86 Platform:

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...6/MozillaFirefox-1.5.0.6-1.3.i586.rpm
b077ab8d63cbca9fad680e31faa34d80
ftp://ftp.suse.com/pub/suse/update/10...fox-translations-1.5.0.6-1.3.i586.rpm
083893020c930fb8d0d2ac107e6afcb2
ftp://ftp.suse.com/pub/suse/update/10...zillaThunderbird-1.5.0.5-0.1.i586.rpm
857642c909f7184dc1a6441025c57d82
ftp://ftp.suse.com/pub/suse/update/10...ird-translations-1.5.0.5-0.1.i586.rpm
41cdd09824e46732fe0160d2eea1db13
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/seamonkey-1.0.4-2.1.i586.rpm
eecf97bedf164629445589bf5fe96f3a
ftp://ftp.suse.com/pub/suse/update/10...seamonkey-calendar-1.0.4-2.1.i586.rpm
9817cd23edbe982c54e8e9788b068272
ftp://ftp.suse.com/pub/suse/update/10...nkey-dom-inspector-1.0.4-2.1.i586.rpm
acc5e00265da3c37d75dd8467e942523
ftp://ftp.suse.com/pub/suse/update/10...i586/seamonkey-irc-1.0.4-2.1.i586.rpm
7a00bd110f7f36a7adac792b4d385cf2
ftp://ftp.suse.com/pub/suse/update/10...586/seamonkey-mail-1.0.4-2.1.i586.rpm
507c561f4179f75652550dea985fd5c5
ftp://ftp.suse.com/pub/suse/update/10...onkey-spellchecker-1.0.4-2.1.i586.rpm
0e528364b0a47d8cc186be99c9273680
ftp://ftp.suse.com/pub/suse/update/10.../seamonkey-venkman-1.0.4-2.1.i586.rpm
0756055ab6c663c03520a566e748fd84

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...6/MozillaFirefox-1.5.0.6-1.2.i586.rpm
169195ef8d8d6aa42578c52301637a7b
ftp://ftp.suse.com/pub/suse/i386/upda...fox-translations-1.5.0.6-1.2.i586.rpm
ce2ca0073cb95cd52908eca9162f12db
ftp://ftp.suse.com/pub/suse/i386/upda...zillaThunderbird-1.5.0.5-0.1.i586.rpm
82c3c849160d835d7dd2e83d58ab46ed

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda...6/MozillaFirefox-1.5.0.6-1.4.i586.rpm
45252c09a02b7947e2dcff6c7b2680f7
ftp://ftp.suse.com/pub/suse/i386/upda...fox-translations-1.5.0.6-1.4.i586.rpm
3f916156c178db203e19854f1be14a6e
ftp://ftp.suse.com/pub/suse/i386/upda...zillaThunderbird-1.5.0.5-0.1.i586.rpm
3878dfec4b42ebf979488794dd5ba153

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/upda...6/MozillaFirefox-1.5.0.6-1.4.i586.rpm
1a6ec1263972cc8ee19b4b88112cbc91
ftp://ftp.suse.com/pub/suse/i386/upda...fox-translations-1.5.0.6-1.4.i586.rpm
10b2b66061b686aab364255edfc7330f
ftp://ftp.suse.com/pub/suse/i386/upda...zillaThunderbird-1.5.0.5-0.1.i586.rpm
d7a39ac5e59594f326c0a7ebf893025a

Power PC Platform:

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...pc/MozillaFirefox-1.5.0.6-1.3.ppc.rpm
beb4517859e09e23b1c1b8e6fe9f7f1b
ftp://ftp.suse.com/pub/suse/update/10...efox-translations-1.5.0.6-1.3.ppc.rpm
f9f7424e954609520a7dcfa5401aa6a0
ftp://ftp.suse.com/pub/suse/update/10...ozillaThunderbird-1.5.0.5-0.1.ppc.rpm
a3810db291a8575ec602046534ac0046
ftp://ftp.suse.com/pub/suse/update/10...bird-translations-1.5.0.5-0.1.ppc.rpm
1c3f6bdab05076e177c39900b8796291
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/seamonkey-1.0.4-2.1.ppc.rpm
2a57cf8e9d58c738d08f3457b18c39c8
ftp://ftp.suse.com/pub/suse/update/10.../seamonkey-calendar-1.0.4-2.1.ppc.rpm
5e5b4e2bc287c6b9fa8dcd920bd5691f
ftp://ftp.suse.com/pub/suse/update/10...onkey-dom-inspector-1.0.4-2.1.ppc.rpm
2b6d0f991fdf834704a717a9da239114
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/seamonkey-irc-1.0.4-2.1.ppc.rpm
8130da7cdb4ece3a5b3ffcd1d8de6604
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/seamonkey-mail-1.0.4-2.1.ppc.rpm
42a37ed33a80d3a9c7922b260ec8d017
ftp://ftp.suse.com/pub/suse/update/10...monkey-spellchecker-1.0.4-2.1.ppc.rpm
7ed788d6b9eaaa450c7bdef217d1da0b
ftp://ftp.suse.com/pub/suse/update/10...c/seamonkey-venkman-1.0.4-2.1.ppc.rpm
22bef32ee56511c1527f2aba2686c31b

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...pc/MozillaFirefox-1.5.0.6-1.2.ppc.rpm
7088063ef61fef41e8ae463017bc2e7a
ftp://ftp.suse.com/pub/suse/i386/upda...efox-translations-1.5.0.6-1.2.ppc.rpm
1179980ccb74d1268981a991ea99ef76
ftp://ftp.suse.com/pub/suse/i386/upda...ozillaThunderbird-1.5.0.5-0.1.ppc.rpm
50989117d508769abe562192f7a29ac0

x86-64 Platform:

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...llaThunderbird-1.5.0.5-0.1.x86_64.rpm
c3c35689ec4183a3f65eadefe0e035f9
ftp://ftp.suse.com/pub/suse/update/10...d-translations-1.5.0.5-0.1.x86_64.rpm
c2a68df8c7a37edb184de0d816bc6f40
ftp://ftp.suse.com/pub/suse/update/10...x86_64/seamonkey-1.0.4-2.1.x86_64.rpm
2c9f593099e65d8a4bea1ddb4475b51b
ftp://ftp.suse.com/pub/suse/update/10...amonkey-calendar-1.0.4-2.1.x86_64.rpm
546d70365782daeae85bc2a5e042bae6
ftp://ftp.suse.com/pub/suse/update/10...ey-dom-inspector-1.0.4-2.1.x86_64.rpm
1b985d53285222446923fb37d936d759
ftp://ftp.suse.com/pub/suse/update/10...64/seamonkey-irc-1.0.4-2.1.x86_64.rpm
c81a87ba73ed766dc25f2b89b98f4f8e
ftp://ftp.suse.com/pub/suse/update/10...4/seamonkey-mail-1.0.4-2.1.x86_64.rpm
36ca5818bb717578542d7def4b8724f9
ftp://ftp.suse.com/pub/suse/update/10...key-spellchecker-1.0.4-2.1.x86_64.rpm
2c798a9aa382ff0bc6f0d44c1861156d
ftp://ftp.suse.com/pub/suse/update/10...eamonkey-venkman-1.0.4-2.1.x86_64.rpm
b6f3a089873cf2df5d82e7fcc4943b28

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...llaThunderbird-1.5.0.5-0.1.x86_64.rpm
64b491ee5e76fd81d22e6bc03efe6b86

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda...llaThunderbird-1.5.0.5-0.1.x86_64.rpm
5f797b743baa880b609350dce4003e28

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/upda...MozillaFirefox-1.5.0.6-1.4.x86_64.rpm
02d00c594d85c27901ac8975ff4074b5
ftp://ftp.suse.com/pub/suse/i386/upda...x-translations-1.5.0.6-1.4.x86_64.rpm
c3e1ab3e8bffa3b7fd1f8c93253bd387
ftp://ftp.suse.com/pub/suse/i386/upda...llaThunderbird-1.5.0.5-0.1.x86_64.rpm
409577b2b376df93980071fa6b080638

Sources:

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...rc/MozillaFirefox-1.5.0.6-1.3.src.rpm
8052f82d870aa163544f20fb0e6e2a7e
ftp://ftp.suse.com/pub/suse/update/10...ozillaThunderbird-1.5.0.5-0.1.src.rpm
a6cc091a2379e066d89f30cc4ef4daca
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/seamonkey-1.0.4-2.1.src.rpm
22f8c43051e3f87df2f6c892259b84c1

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...rc/MozillaFirefox-1.5.0.6-1.2.src.rpm
b369c54440dab641eaca7ffacce2fdca
ftp://ftp.suse.com/pub/suse/i386/upda...ozillaThunderbird-1.5.0.5-0.1.src.rpm
3d8939c81652438cc45df2dfafad3401

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda...rc/MozillaFirefox-1.5.0.6-1.4.src.rpm
6e343044e7c9061e7893d1ad798fb683
ftp://ftp.suse.com/pub/suse/i386/upda...ozillaThunderbird-1.5.0.5-0.1.src.rpm
520ad8710e85f56082e8f744dd7fa9b4

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/upda...rc/MozillaFirefox-1.5.0.6-1.4.src.rpm
e102231a46d19c0d05f6e31318a6527e
ftp://ftp.suse.com/pub/suse/i386/upda...ozillaThunderbird-1.5.0.5-0.1.src.rpm
206929deb348a7ca699d92cda0e4c3e1

Original Advisory:
http://lists.suse.com/archive/suse-security-announce/2006-Aug/0007.html

Other References:
SA19873:
http://secunia.com/advisories/19873/

SA21229:
http://secunia.com/advisories/21229/

SA21228:
http://secunia.com/advisories/21228/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. phpBB Avatar Script Insertion Vulnerability // 41 views
2. phpBB Avatar Functions Information Disclosure and Deletion // 37 views
3. CUPS Multiple Vulnerabilities // 37 views
4. Sun Java System Web Proxy Server FTP Subsystem Buffer Overflow // 37 views
5. CA ARCserve Backup Multiple Vulnerabilities // 36 views
6. ScriptsEz Easy Image Downloader "id" File Disclosure Vulnerability // 34 views
7. Apple Mac OS X Security Update Fixes Multiple Vulnerabilities // 34 views
8. phpBB reveals user IPs // 28 views
9. phpBB Cross Site Scripting and Unspecified Vulnerabilities // 27 views
10. FUJITSU Interstage Products Apache Tomcat Security Bypass // 26 views