Описание
ELSA-2011-1437: firefox security update (CRITICAL)
firefox: [3.6.24-3.0.1.el6_1]
- Add firefox-oracle-default-prefs.js and remove the corresponding Red Hat ones
[3.6.24-3]
- Update to 3.6.24
xulrunner: [1.9.2.24-2.0.1.el6_1.1]
- Replace xulrunner-redhat-default-prefs.js with xulrunner-oracle-default-prefs.js
[1.9.2.24-2]
- Update to 1.9.2.24
Обновленные пакеты
Oracle Linux 5
Oracle Linux ia64
firefox
3.6.24-3.0.1.el5_7
xulrunner
1.9.2.24-2.0.1.el5_7
xulrunner-devel
1.9.2.24-2.0.1.el5_7
Oracle Linux x86_64
firefox
3.6.24-3.0.1.el5_7
xulrunner
1.9.2.24-2.0.1.el5_7
xulrunner-devel
1.9.2.24-2.0.1.el5_7
Oracle Linux i386
firefox
3.6.24-3.0.1.el5_7
xulrunner
1.9.2.24-2.0.1.el5_7
xulrunner-devel
1.9.2.24-2.0.1.el5_7
Oracle Linux 6
Oracle Linux x86_64
firefox
3.6.24-3.0.1.el6_1
xulrunner
1.9.2.24-2.0.1.el6_1.1
xulrunner-devel
1.9.2.24-2.0.1.el6_1.1
Oracle Linux i686
firefox
3.6.24-3.0.1.el6_1
xulrunner
1.9.2.24-2.0.1.el6_1.1
xulrunner-devel
1.9.2.24-2.0.1.el6_1.1
Связанные CVE
Связанные уязвимости
Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.
Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.
Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.
Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird befo ...