Secunia Logo
Netsikker nu! 2008
 
SUSE updates for MozillaFirefox and MozillaThunderbird
Secunia Advisory: SA23545
Release Date: 2006-12-29
Popularity: 8,426 views

Critical:
Highly critical
Impact: Cross Site Scripting
Exposure of sensitive information
DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:SUSE Linux 10
SUSE Linux 10.1
SUSE Linux 9.3
SUSE Linux Enterprise Server 10

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2006-6497
CVE-2006-6498
CVE-2006-6499
CVE-2006-6500
CVE-2006-6501
CVE-2006-6502
CVE-2006-6503
CVE-2006-6504
CVE-2006-6505
CVE-2006-6506
CVE-2006-6507


Description:
SUSE has issued an update for MozillaFirefox and MozillaThunderbird. This fixes some vulnerabilities, which can be exploited by malicious people to gain knowledge of certain information, conduct cross-site scripting attacks and potentially compromise a user's system.

For more information:
SA23282
SA23420

Solution:
Apply updated packages.

x86 Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10...6/MozillaFirefox-2.0.0.1-0.1.i586.rpm
eea9f40b409823d691ad0e1b3daf5a82
ftp://ftp.suse.com/pub/suse/update/10...fox-translations-2.0.0.1-0.1.i586.rpm
dc5e760f067b2d1ea41be90c92517a5d
ftp://ftp.suse.com/pub/suse/update/10...zillaThunderbird-1.5.0.9-0.1.i586.rpm
0b3638d9bfccfca0cf149df1200e6c47
ftp://ftp.suse.com/pub/suse/update/10...ird-translations-1.5.0.9-0.1.i586.rpm
d51cb9ff1cb3f5875cb4fa60b58f159b

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...6/MozillaFirefox-1.5.0.9-0.2.i586.rpm
fa3a6d10cb1a6dd801668e8881424036
ftp://ftp.suse.com/pub/suse/update/10...fox-translations-1.5.0.9-0.2.i586.rpm
a40dc8d7e29aa8bb21ecb3c348e0cc05
ftp://ftp.suse.com/pub/suse/update/10...zillaThunderbird-1.5.0.9-0.1.i586.rpm
3bbfce9a8abf9394959348e449b35b95
ftp://ftp.suse.com/pub/suse/update/10...ird-translations-1.5.0.9-0.1.i586.rpm
869cac360c49cc15358b205923f2ee1d

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...6/MozillaFirefox-1.5.0.9-0.1.i586.rpm
f0b6bd1b56b874eb0003752cd112d6db
ftp://ftp.suse.com/pub/suse/i386/upda...fox-translations-1.5.0.9-0.1.i586.rpm
1722380cad796cc29d15374f7c471f09
ftp://ftp.suse.com/pub/suse/i386/upda...zillaThunderbird-1.5.0.9-0.1.i586.rpm
82d7d8847f363a9e46fc9d22aa44f0c8

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda...6/MozillaFirefox-1.5.0.9-0.1.i586.rpm
06b3af42ed8f528a306650691558301f
ftp://ftp.suse.com/pub/suse/i386/upda...fox-translations-1.5.0.9-0.1.i586.rpm
be42160ef33ead2625b20043267c2ce2
ftp://ftp.suse.com/pub/suse/i386/upda...zillaThunderbird-1.5.0.9-0.1.i586.rpm
239aa22605bbd7c89a8489fb49c51f5d

Power PC Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10...pc/MozillaFirefox-2.0.0.1-0.1.ppc.rpm
c9611899a9bed84f006f8451dfcc44ae
ftp://ftp.suse.com/pub/suse/update/10...efox-translations-2.0.0.1-0.1.ppc.rpm
e539db36e921505166e238a5aa853750
ftp://ftp.suse.com/pub/suse/update/10...ozillaThunderbird-1.5.0.9-0.1.ppc.rpm
0d0b60cf410588c59003d04ab0ce0b33
ftp://ftp.suse.com/pub/suse/update/10...bird-translations-1.5.0.9-0.1.ppc.rpm
0445e6652c8862691426ed623db2b362

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...pc/MozillaFirefox-1.5.0.9-0.2.ppc.rpm
3d399bf2bab2611809add386b63c085a
ftp://ftp.suse.com/pub/suse/update/10...efox-translations-1.5.0.9-0.2.ppc.rpm
4a0223d379107cc45ef13d59369914dd
ftp://ftp.suse.com/pub/suse/update/10...ozillaThunderbird-1.5.0.9-0.1.ppc.rpm
a795cd195043826ab0c9227251058905
ftp://ftp.suse.com/pub/suse/update/10...bird-translations-1.5.0.9-0.1.ppc.rpm
a2c70ba35f54ff5cf7970d05940f00ee

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...pc/MozillaFirefox-1.5.0.9-0.1.ppc.rpm
72520bda4b0156991ce85e34eeef90a9
ftp://ftp.suse.com/pub/suse/i386/upda...efox-translations-1.5.0.9-0.1.ppc.rpm
9d7f48fdce0092b7e00920ead4db56dc
ftp://ftp.suse.com/pub/suse/i386/upda...ozillaThunderbird-1.5.0.9-0.1.ppc.rpm
aea7d9cfe7b9b95ddd0761bf4fce7fc1

x86-64 Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10...MozillaFirefox-2.0.0.1-0.1.x86_64.rpm
941d4d0e8a4332e3d585b67347d3bfaf
ftp://ftp.suse.com/pub/suse/update/10...x-translations-2.0.0.1-0.1.x86_64.rpm
21cbeb89fcad730aecb715d92bdc9521
ftp://ftp.suse.com/pub/suse/update/10...llaThunderbird-1.5.0.9-0.1.x86_64.rpm
edc263e07b53d019e0d686c2134dddf5
ftp://ftp.suse.com/pub/suse/update/10...d-translations-1.5.0.9-0.1.x86_64.rpm
f4f8dedac060cbd33f4b480aacb05bef

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...llaThunderbird-1.5.0.9-0.1.x86_64.rpm
37f2af41fa077600d68df74547da4339
ftp://ftp.suse.com/pub/suse/update/10...d-translations-1.5.0.9-0.1.x86_64.rpm
094c3157d83486a2fb10f0e3bb365a0a

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...llaThunderbird-1.5.0.9-0.1.x86_64.rpm
f78215541f3b1f1af4aeba8b7414e907

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda...llaThunderbird-1.5.0.9-0.1.x86_64.rpm
dff09a04cd253fdcf830f93aa10edf49

Sources:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10...rc/MozillaFirefox-2.0.0.1-0.1.src.rpm
8bdf86d5275d649f546a22c63a4b8cfb
ftp://ftp.suse.com/pub/suse/update/10...ozillaThunderbird-1.5.0.9-0.1.src.rpm
223fff785e9e86fd5cbe0106ab1a5ddf

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...rc/MozillaFirefox-1.5.0.9-0.2.src.rpm
38373d35abf94ec8c0a2008dd1b6fc0d
ftp://ftp.suse.com/pub/suse/update/10...ozillaThunderbird-1.5.0.9-0.1.src.rpm
184a16b5b80bd056a9526873756b75a5

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...rc/MozillaFirefox-1.5.0.9-0.1.src.rpm
62ade9bd59c8da0e9b739e59a8247708
ftp://ftp.suse.com/pub/suse/i386/upda...ozillaThunderbird-1.5.0.9-0.1.src.rpm
2ec8f62cf812e2ea756e618c941fbdb5

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda...rc/MozillaFirefox-1.5.0.9-0.1.src.rpm
c4444ff036405a4baa37c33b975941fa
ftp://ftp.suse.com/pub/suse/i386/upda...ozillaThunderbird-1.5.0.9-0.1.src.rpm
14f7289ab7a5a2fcfd6cedf2acda628b

Original Advisory:
http://lists.suse.com/archive/suse-security-announce/2006-Dec/0010.html

Other References:
SA23282:
http://secunia.com/advisories/23282/

SA23420:
http://secunia.com/advisories/23420/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Today
New advisories: 9
New vulnerabilities: 32
Updated advisories: 12

Highly // 145 views
Opera Multiple Vulnerabilities
Moderately // 98 views
Red Hat update for condor
Moderately // 94 views
Condor Multiple Vulnerabilities
Moderately // 110 views
Gentoo update for wordnet
Moderately // 130 views
Red Hat update for kernel

7th Oct, 2008
New advisories: 19
New vulnerabilities: 68
Updated advisories: 61

Moderately // 481 views
Debian update for php5

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Adobe Flash Player "Clickjacking" Security Bypass Vulnerability // 166 views
2. Red Hat update for kernel // 122 views
3. Opera Multiple Vulnerabilities // 120 views
4. Gentoo update for wordnet // 104 views
5. Hero DVD Player M3U Processing Buffer Overflow Vulnerability // 88 views
6. Red Hat update for condor // 86 views
7. Condor Multiple Vulnerabilities // 85 views
8. PHP Realtor "v_cat" SQL Injection Vulnerability // 62 views
9. Debian update for php5 // 48 views
10. Atarone CMS Multiple Vulnerabilities // 30 views