Описание
ELSA-2013-1268: firefox security update (CRITICAL)
firefox [17.0.9-1.0.1.el6_4]
- Add firefox-oracle-default-prefs.js and remove the corresponding Red Hat ones
[17.0.9-1]
- Update to 17.0.9 ESR
[17.0.8-4]
- Added fix for mozbz#601442 - Support the extensions.getAddons.showPane pref again in the Add-ons Manager UI, a part of rhbz#818636 fix.
[17.0.8-3]
- Fixed rhbz#818636 - Firefox allows install of addons, disregarding xpinstall.enabled flag set as false.
[17.0.8-2]
- Updated manual page
xulrunner [17.0.9-1.0.1.el6_4]
- Replaced xulrunner-redhat-default-prefs.js with xulrunner-oracle-default-prefs.js
- Removed XULRUNNER_VERSION from SOURCE21
[17.0.9-1]
- Update to 17.0.9 ESR
[17.0.8-5]
- Fixed mozbz#633001 - Cannot open ipv6 address with self-signed certificate
[17.0.8-4]
- Fixed rhbz#818636 - Firefox allows install of addons, disregarding xpinstall.enabled flag set as false.
Обновленные пакеты
Oracle Linux 5
Oracle Linux ia64
firefox
17.0.9-1.0.1.el5_9
xulrunner
17.0.9-1.0.1.el5_9
xulrunner-devel
17.0.9-1.0.1.el5_9
Oracle Linux x86_64
firefox
17.0.9-1.0.1.el5_9
xulrunner
17.0.9-1.0.1.el5_9
xulrunner-devel
17.0.9-1.0.1.el5_9
Oracle Linux i386
firefox
17.0.9-1.0.1.el5_9
xulrunner
17.0.9-1.0.1.el5_9
xulrunner-devel
17.0.9-1.0.1.el5_9
Oracle Linux 6
Oracle Linux x86_64
firefox
17.0.9-1.0.1.el6_4
xulrunner
17.0.9-1.0.1.el6_4
xulrunner-devel
17.0.9-1.0.1.el6_4
Oracle Linux i686
firefox
17.0.9-1.0.1.el6_4
xulrunner
17.0.9-1.0.1.el6_4
xulrunner-devel
17.0.9-1.0.1.el6_4
Ссылки на источники
Связанные уязвимости
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.