Описание
ELSA-2010-0966: firefox security update (CRITICAL)
firefox:
[3.6.13-1.0.1.el6_0]
- Added firefox-oracle-default-prefs.js and removed firefox-redhat-default-prefs.js [bugz 11762]
[3.6.13-2]
- Update to 3.6.13 build3
[3.6.13-1]
- Update to 3.6.13
[3.6.12-1]
- Update to 3.6.12
[3.6.11-1]
- Update to 3.6.11
xulrunner:
[1.9.2.13-3.0.1.el6_0]
- Added xulrunner-oracle-default-prefs.js and removed the corresponding RedHat one. Bug#11487
[1.9.2.13-3]
- Update to 1.9.2.13 build3
[1.9.2.13-2]
- Update to 1.9.2.13 build2
[1.9.2.13-1]
- Update to 1.9.2.13
[1.9.2.12-1]
- Update to 1.9.2.12
[1.9.2.11-1]
- Update to 1.9.2.1
Обновленные пакеты
Oracle Linux 5
Oracle Linux ia64
firefox
3.6.13-2.0.1.el5
xulrunner
1.9.2.13-3.0.1.el5
xulrunner-devel
1.9.2.13-3.0.1.el5
Oracle Linux x86_64
firefox
3.6.13-2.0.1.el5
xulrunner
1.9.2.13-3.0.1.el5
xulrunner-devel
1.9.2.13-3.0.1.el5
Oracle Linux i386
firefox
3.6.13-2.0.1.el5
xulrunner
1.9.2.13-3.0.1.el5
xulrunner-devel
1.9.2.13-3.0.1.el5
Oracle Linux 6
Oracle Linux x86_64
firefox
3.6.13-2.0.1.el6_0
xulrunner
1.9.2.13-3.0.1.el6_0
xulrunner-devel
1.9.2.13-3.0.1.el6_0
Oracle Linux i686
firefox
3.6.13-2.0.1.el6_0
xulrunner
1.9.2.13-3.0.1.el6_0
xulrunner-devel
1.9.2.13-3.0.1.el6_0
Ссылки на источники
Связанные уязвимости
Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird before 3.0.11 and 3.1.x before 3.1.7, and SeaMonkey before 2.0.11 do not properly validate downloadable fonts before use within an operating system's font implementation, which allows remote attackers to execute arbitrary code via vectors related to @font-face Cascading Style Sheets (CSS) rules.
Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird before 3.0.11 and 3.1.x before 3.1.7, and SeaMonkey before 2.0.11 do not properly validate downloadable fonts before use within an operating system's font implementation, which allows remote attackers to execute arbitrary code via vectors related to @font-face Cascading Style Sheets (CSS) rules.
Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird before 3.0.11 and 3.1.x before 3.1.7, and SeaMonkey before 2.0.11 do not properly validate downloadable fonts before use within an operating system's font implementation, which allows remote attackers to execute arbitrary code via vectors related to @font-face Cascading Style Sheets (CSS) rules.
Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird bef ...