Описание
ELSA-2009-1530: firefox security update (CRITICAL)
firefox:
[3.0.15-3.0.1.el5_4]
- Update firstrun and homepage URLs in specfile
- Added patch oracle-firefox-branding.patch
- Added firefox-oracle-default-prefs.js/firefox-oracle-default-bookmarks.html and removed the corresponding Red Hat ones
[3.0.15-3]
- Rebuild due to Mozilla's respin
[3.0.15-2]
- Rebuild due to xulrunner changes
[3.0.15-1]
- Update to 3.0.15
nspr:
[4.7.6-1]
- update to 4.7.6
xulrunner:
[1.9.0.15-3.0.1.el5_4]
- Added xulrunner-oracle-default-prefs.js and removed the corresponding RedHat one.
[1.9.0.15-3]
- Rebuild due to Mozilla's respin
[1.9.0.15-2]
- Added remedy patch
[1.9.0.15-1]
- Update to 1.9.0.15
Обновленные пакеты
Oracle Linux 5
Oracle Linux ia64
firefox
3.0.15-3.0.1.el5_4
nspr
4.7.6-1.el5_4
nspr-devel
4.7.6-1.el5_4
xulrunner
1.9.0.15-3.0.1.el5_4
xulrunner-devel
1.9.0.15-3.0.1.el5_4
xulrunner-devel-unstable
1.9.0.15-3.0.1.el5_4
Oracle Linux x86_64
firefox
3.0.15-3.0.1.el5_4
nspr
4.7.6-1.el5_4
nspr-devel
4.7.6-1.el5_4
xulrunner
1.9.0.15-3.0.1.el5_4
xulrunner-devel
1.9.0.15-3.0.1.el5_4
xulrunner-devel-unstable
1.9.0.15-3.0.1.el5_4
Oracle Linux i386
firefox
3.0.15-3.0.1.el5_4
nspr
4.7.6-1.el5_4
nspr-devel
4.7.6-1.el5_4
xulrunner
1.9.0.15-3.0.1.el5_4
xulrunner-devel
1.9.0.15-3.0.1.el5_4
xulrunner-devel-unstable
1.9.0.15-3.0.1.el5_4
Ссылки на источники
Связанные уязвимости
content/html/document/src/nsHTMLDocument.cpp in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 allows user-assisted remote attackers to bypass the Same Origin Policy and read an arbitrary content selection via the document.getSelection function.
content/html/document/src/nsHTMLDocument.cpp in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 allows user-assisted remote attackers to bypass the Same Origin Policy and read an arbitrary content selection via the document.getSelection function.
content/html/document/src/nsHTMLDocument.cpp in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 allows user-assisted remote attackers to bypass the Same Origin Policy and read an arbitrary content selection via the document.getSelection function.
content/html/document/src/nsHTMLDocument.cpp in Mozilla Firefox 3.0.x ...
content/html/document/src/nsHTMLDocument.cpp in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 allows user-assisted remote attackers to bypass the Same Origin Policy and read an arbitrary content selection via the document.getSelection function.