Mozilla Suite, Firefox, SeaMonkey, and Thunderbird Multiple Remote Vulnerabilities
BID:17516
Info
Mozilla Suite, Firefox, SeaMonkey, and Thunderbird Multiple Remote Vulnerabilities
| Bugtraq ID: | 17516 |
| Class: | Unknown |
| CVE: |
CVE-2006-1724 CVE-2006-1529 CVE-2006-1530 CVE-2006-1531 CVE-2006-1723 CVE-2006-1730 CVE-2006-1729 CVE-2006-1728 CVE-2006-1727 CVE-2006-1045 CVE-2006-0748 CVE-2006-1726 CVE-2006-1725 CVE-2006-1731 CVE-2006-0749 CVE-2006-1732 CVE-2006-1733 CVE-2006-1734 CVE-2006-1735 CVE-2006-1736 CVE-2006-1740 CVE-2006-1790 CVE-2006-1738 CVE-2006-1737 CVE-2006-1739 CVE-2006-1741 CVE-2006-1742 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 13 2006 12:00AM |
| Updated: | Sep 10 2008 08:20PM |
| Credit: | TippingPoint and the Zero Day Initiative, Claus Jørgensen, shutdown, Georgi Guninski, CrashFr, moz_bug_r_a4, and various other currently-unknown people are credited for discovering these issues. |
| Vulnerable: |
Ubuntu Ubuntu Linux 5.10 powerpc Ubuntu Ubuntu Linux 5.10 i386 Ubuntu Ubuntu Linux 5.10 amd64 Ubuntu Ubuntu Linux 5.0 4 powerpc Ubuntu Ubuntu Linux 5.0 4 i386 Ubuntu Ubuntu Linux 5.0 4 amd64 Ubuntu Ubuntu Linux 4.1 ppc Ubuntu Ubuntu Linux 4.1 ia64 Ubuntu Ubuntu Linux 4.1 ia32 SuSE SUSE Linux Enterprise Server 8 SuSE Linux Enterprise Server 9 SuSE Linux Desktop 1.0 Sun Solaris 9_x86 Sun Solaris 9 Sun Solaris 8_x86 Sun Solaris 8_sparc Sun Solaris 10_x86 Sun Solaris 10.0_x86 Sun Solaris 10.0 Sun Solaris 10 Sun Java Desktop System (JDS) 2.0 Slackware Linux 10.2 Slackware Linux 10.1 Slackware Linux 10.0 Slackware Linux -current SCO Unixware 7.1.4 SCO Unixware 7.1.3 S.u.S.E. UnitedLinux 1.0 S.u.S.E. Novell Linux Desktop 9.0 S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 10.0 S.u.S.E. Linux Professional 9.3 x86_64 S.u.S.E. Linux Professional 9.3 S.u.S.E. Linux Professional 9.2 x86_64 S.u.S.E. Linux Professional 9.2 S.u.S.E. Linux Professional 9.1 x86_64 S.u.S.E. Linux Professional 9.1 S.u.S.E. Linux Professional 10.1 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. Linux Personal 9.3 x86_64 S.u.S.E. Linux Personal 9.3 S.u.S.E. Linux Personal 9.2 x86_64 S.u.S.E. Linux Personal 9.2 S.u.S.E. Linux Personal 9.1 x86_64 S.u.S.E. Linux Personal 9.1 S.u.S.E. Linux Personal 10.1 Redhat Linux 9.0 i386 Redhat Linux 7.3 i686 Redhat Linux 7.3 i386 Redhat Linux 7.3 Redhat Fedora Core5 Redhat Fedora Core4 Redhat Fedora Core3 Redhat Fedora Core2 Redhat Fedora Core1 Redhat Enterprise Linux WS 4 Redhat Enterprise Linux WS 3 Redhat Enterprise Linux WS 2.1 IA64 Redhat Enterprise Linux WS 2.1 Redhat Enterprise Linux ES 4 Redhat Enterprise Linux ES 3 Redhat Enterprise Linux ES 2.1 IA64 Redhat Enterprise Linux ES 2.1 Redhat Enterprise Linux AS 4 Redhat Enterprise Linux AS 3 Redhat Enterprise Linux AS 2.1 IA64 Redhat Enterprise Linux AS 2.1 Redhat Desktop 4.0 Redhat Desktop 3.0 Redhat Advanced Workstation for the Itanium Processor 2.1 IA64 Redhat Advanced Workstation for the Itanium Processor 2.1 Netscape Netscape 7.2 Netscape Browser 8.0.4 Mozilla Thunderbird 1.5 beta 2 Mozilla Thunderbird 1.5 Mozilla Thunderbird 1.0.7 Mozilla Thunderbird 1.0.6 Mozilla Thunderbird 1.0.5 Mozilla Thunderbird 1.0.2 Mozilla Thunderbird 1.0.1 Mozilla Thunderbird 1.0 Mozilla Thunderbird 0.9 Mozilla Thunderbird 0.8 Mozilla Thunderbird 0.7.3 Mozilla Thunderbird 0.7.2 Mozilla Thunderbird 0.7.1 Mozilla Thunderbird 0.7 Mozilla Thunderbird 0.6 Mozilla Thunderbird 1.5.0.1 Mozilla SeaMonkey 1.0 dev Mozilla SeaMonkey 1.0 Mozilla Firefox 1.5 beta 2 Mozilla Firefox 1.5 beta 1 Mozilla Firefox 1.5 Mozilla Firefox 1.0.7 Mozilla Firefox 1.0.6 Mozilla Firefox 1.0.5 Mozilla Firefox 1.0.5 Mozilla Firefox 1.0.4 Mozilla Firefox 1.0.3 Mozilla Firefox 1.0.2 Mozilla Firefox 1.0.1 Mozilla Firefox 1.0 Mozilla Firefox 0.10.1 Mozilla Firefox 0.10 Mozilla Firefox 0.9.3 Mozilla Firefox 0.9.2 Mozilla Firefox 0.9.1 Mozilla Firefox 0.9 rc Mozilla Firefox 0.9 Mozilla Firefox 0.8 Mozilla Firefox Preview Release Mozilla Firefox 1.5.0.1 Mozilla Browser 1.8 Alpha 4 Mozilla Browser 1.8 Alpha 3 Mozilla Browser 1.8 Alpha 2 Mozilla Browser 1.8 Alpha 1 Mozilla Browser 1.7.12 Mozilla Browser 1.7.11 Mozilla Browser 1.7.10 Mozilla Browser 1.7.9 Mozilla Browser 1.7.8 Mozilla Browser 1.7.7 Mozilla Browser 1.7.6 Mozilla Browser 1.7.5 Mozilla Browser 1.7.4 Mozilla Browser 1.7.3 Mozilla Browser 1.7.2 Mozilla Browser 1.7.1 Mozilla Browser 1.7 rc3 Mozilla Browser 1.7 rc2 Mozilla Browser 1.7 rc1 Mozilla Browser 1.7 beta Mozilla Browser 1.7 alpha Mozilla Browser 1.7 Mozilla Browser 1.6 Mozilla Browser 1.5.1 Mozilla Browser 1.5 Mozilla Browser 1.4.4 Mozilla Browser 1.4.2 Mozilla Browser 1.4.1 Mozilla Browser 1.4 b Mozilla Browser 1.4 a Mozilla Browser 1.4 Mozilla Browser 1.3.1 Mozilla Browser 1.3 Mozilla Browser 1.2.1 Mozilla Browser 1.2 Beta Mozilla Browser 1.2 Alpha Mozilla Browser 1.2 Mozilla Browser 1.1 Beta Mozilla Browser 1.1 Alpha Mozilla Browser 1.1 Mozilla Browser 1.0.2 Mozilla Browser 1.0.1 Mozilla Browser 1.0 RC2 Mozilla Browser 1.0 RC1 Mozilla Browser 1.0 Mozilla Browser 0.9.48 Mozilla Browser 0.9.35 Mozilla Browser 0.9.9 Mozilla Browser 0.9.8 Mozilla Browser 0.9.7 Mozilla Browser 0.9.6 Mozilla Browser 0.9.5 Mozilla Browser 0.9.4 .1 Mozilla Browser 0.9.4 Mozilla Browser 0.9.3 Mozilla Browser 0.9.2 .1 Mozilla Browser 0.9.2 Mozilla Browser 0.8 Mozilla Browser M16 Mozilla Browser M15 Mandriva Linux Mandrake 2006.0 x86_64 Mandriva Linux Mandrake 2006.0 MandrakeSoft Corporate Server 3.0 x86_64 MandrakeSoft Corporate Server 3.0 HP HP-UX B.11.31 HP HP-UX B.11.23 HP HP-UX B.11.11 HP HP-UX B.11.11 HP HP-UX B.11.00 Gentoo Linux Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 |
| Not Vulnerable: |
Mozilla Thunderbird 1.0.8 Mozilla Thunderbird 1.5.0.2 Mozilla SeaMonkey 1.0.1 Mozilla Firefox 1.0.8 Mozilla Firefox 1.5.0.2 Mozilla Browser 1.7.13 |
Discussion
Mozilla Suite, Firefox, SeaMonkey, and Thunderbird Multiple Remote Vulnerabilities
The Mozilla Foundation has released nine security advisories specifying security vulnerabilities in Mozilla Suite, Firefox, SeaMonkey, and Thunderbird.
These vulnerabilities allow attackers to:
- execute arbitrary machine code in the context of the vulnerable application
- crash affected applications
- gain elevated privileges in JavaScript code, potentially allowing remote machine code execution
- gain access to potentially sensitive information
- bypass security checks
- spoof window contents.
Other attacks may also be possible.
The issues described here will be split into individual BIDs as the information embargo on the Mozilla Bugzilla entries is lifted and as further information becomes available. This BID will then be retired.
These issues are fixed in:
- Mozilla Firefox versions 1.0.8 and 1.5.0.2
- Mozilla Thunderbird versions 1.0.8 and 1.5.0.2
- Mozilla Suite version 1.7.13
- Mozilla SeaMonkey version 1.0.1
The Mozilla Foundation has released nine security advisories specifying security vulnerabilities in Mozilla Suite, Firefox, SeaMonkey, and Thunderbird.
These vulnerabilities allow attackers to:
- execute arbitrary machine code in the context of the vulnerable application
- crash affected applications
- gain elevated privileges in JavaScript code, potentially allowing remote machine code execution
- gain access to potentially sensitive information
- bypass security checks
- spoof window contents.
Other attacks may also be possible.
The issues described here will be split into individual BIDs as the information embargo on the Mozilla Bugzilla entries is lifted and as further information becomes available. This BID will then be retired.
These issues are fixed in:
- Mozilla Firefox versions 1.0.8 and 1.5.0.2
- Mozilla Thunderbird versions 1.0.8 and 1.5.0.2
- Mozilla Suite version 1.7.13
- Mozilla SeaMonkey version 1.0.1
Exploit / POC
Mozilla Suite, Firefox, SeaMonkey, and Thunderbird Multiple Remote Vulnerabilities
Some of the described vulnerabilities do not require exploits.
Proof-of-concept exploits are available in the Mozilla Bugzilla database, but they are not currently available to the general public.
Some of the described vulnerabilities do not require exploits.
Proof-of-concept exploits are available in the Mozilla Bugzilla database, but they are not currently available to the general public.
Solution / Fix
Mozilla Suite, Firefox, SeaMonkey, and Thunderbird Multiple Remote Vulnerabilities
Solution:
New versions of the Mozilla Suite, Firefox, SeaMonkey, and Thunderbird are available to address these issues. Most Mozilla applications have self-updating features that may be used to download and install fixes.
Please see the referenced advisories for information on obtaining and applying fixes.
Sun Solaris 10.0
Sun Solaris 8_sparc
HP HP-UX B.11.23
HP HP-UX B.11.11
Mozilla Thunderbird 0.8
Mozilla Firefox 1.0.4
Mozilla Browser 1.4.1
Mozilla Browser 1.6
SCO Unixware 7.1.4
S.u.S.E. Linux Professional 9.3
Solution:
New versions of the Mozilla Suite, Firefox, SeaMonkey, and Thunderbird are available to address these issues. Most Mozilla applications have self-updating features that may be used to download and install fixes.
Please see the referenced advisories for information on obtaining and applying fixes.
Sun Solaris 10.0
-
Sun 119115-21
http://sunsolve.sun.com/
Sun Solaris 8_sparc
-
Sun 120671-03
http://sunsolve.sun.com/patches/
HP HP-UX B.11.23
-
HP Firefox v2.0.0.4
http://www.hp.com/products1/unix/java/firefox/downloads/license_firefo x_2-0-0-4.html -
HP thunderbird_1.5.0.9_ia.depot.gz
For HP-UX B.11.23 and B.11.31 (IA)
http://www.hp.com/products1/unix/java/firefox/downloads/license_thunde rbird_1-5-0-8.html -
HP thunderbird_1.5.0.9_pa.depot.gz
For HP-UX B.11.11, B.11.23, and B.11.31 (PA)
http://www.hp.com/products1/unix/java/firefox/downloads/license_thunde rbird_1-5-0-8.html
HP HP-UX B.11.11
-
HP Firefox v2.0.0.4
http://www.hp.com/products1/unix/java/firefox/downloads/license_firefo x_2-0-0-4.html -
HP thunderbird_1.5.0.9_pa.depot.gz
For HP-UX B.11.11, B.11.23, and B.11.31 (PA)
http://www.hp.com/products1/unix/java/firefox/downloads/license_thunde rbird_1-5-0-8.html
Mozilla Thunderbird 0.8
-
Fedora Legacy thunderbird-1.0.8-1.1.fc3.4.legacy.i386.rpm
Fedora Core 3:
http://download.fedoralegacy.org/fedora/3/updates/i386/thunderbird-1.0 .8-1.1.fc3.4.legacy.i386.rpm -
Fedora Legacy thunderbird-1.0.8-1.1.fc3.4.legacy.x86_64.rpm
Fedora Core 3:
http://download.fedoralegacy.org/fedora/3/updates/x86_64/thunderbird-1 .0.8-1.1.fc3.4.legacy.x86_64.rpm
Mozilla Firefox 1.0.4
-
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_alpha.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_amd64.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_arm.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_hppa.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_i386.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_ia64.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_m68k.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_mips.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_mipsel.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_powerpc.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_s390.deb -
Debian mozilla-firefox-dom-inspector_1.0.4-2sarge6_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-dom-inspector_1.0.4-2sarge6_sparc.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_alpha.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_amd64.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_arm.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_hppa.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_i386.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_ia64.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_m68k.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_mips.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_mipsel.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_powerpc.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_s390.deb -
Debian mozilla-firefox-gnome-support_1.0.4-2sarge6_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox-gnome-support_1.0.4-2sarge6_sparc.deb -
Debian mozilla-firefox_1.0.4-2sarge6_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_alpha.deb -
Debian mozilla-firefox_1.0.4-2sarge6_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_amd64.deb -
Debian mozilla-firefox_1.0.4-2sarge6_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_arm.deb -
Debian mozilla-firefox_1.0.4-2sarge6_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_hppa.deb -
Debian mozilla-firefox_1.0.4-2sarge6_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_i386.deb -
Debian mozilla-firefox_1.0.4-2sarge6_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_ia64.deb -
Debian mozilla-firefox_1.0.4-2sarge6_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_m68k.deb -
Debian mozilla-firefox_1.0.4-2sarge6_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_mips.deb -
Debian mozilla-firefox_1.0.4-2sarge6_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_mipsel.deb -
Debian mozilla-firefox_1.0.4-2sarge6_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_powerpc.deb -
Debian mozilla-firefox_1.0.4-2sarge6_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_s390.deb -
Debian mozilla-firefox_1.0.4-2sarge6_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/m/mozilla-firefox/mozilla -firefox_1.0.4-2sarge6_sparc.deb -
RedHat Fedora firefox-1.0.8-1.1.fc4.i386.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/4 -
RedHat Fedora firefox-1.0.8-1.1.fc4.ppc.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/4 -
RedHat Fedora firefox-1.0.8-1.1.fc4.x86_64.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/4 -
RedHat Fedora firefox-debuginfo-1.0.8-1.1.fc4.i386.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/4 -
RedHat Fedora firefox-debuginfo-1.0.8-1.1.fc4.ppc.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/4 -
RedHat Fedora firefox-debuginfo-1.0.8-1.1.fc4.x86_64.rpm
Fedora Core 4
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/4
Mozilla Browser 1.4.1
-
RedHat epiphany-1.0.8-1.fc1.6.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/epiphany-1.0.8- 1.fc1.6.legacy.i386.rpm -
RedHat mozilla-1.7.13-1.1.1.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-1.7.13- 1.1.1.legacy.i386.rpm -
RedHat mozilla-chat-1.7.13-1.1.1.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-chat-1. 7.13-1.1.1.legacy.i386.rpm -
RedHat mozilla-devel-1.7.13-1.1.1.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-devel-1 .7.13-1.1.1.legacy.i386.rpm -
RedHat mozilla-dom-inspector-1.7.13-1.1.1.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-dom-ins pector-1.7.13-1.1.1.legacy.i386.rpm -
RedHat mozilla-js-debugger-1.7.13-1.1.1.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-js-debu gger-1.7.13-1.1.1.legacy.i386.rpm -
RedHat mozilla-mail-1.7.13-1.1.1.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-mail-1. 7.13-1.1.1.legacy.i386.rpm -
RedHat mozilla-nspr-1.7.13-1.1.1.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-nspr-1. 7.13-1.1.1.legacy.i386.rpm -
RedHat mozilla-nspr-devel-1.7.13-1.1.1.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-nspr-de vel-1.7.13-1.1.1.legacy.i386.rpm -
RedHat mozilla-nss-1.7.13-1.1.1.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-nss-1.7 .13-1.1.1.legacy.i386.rpm -
RedHat mozilla-nss-devel-1.7.13-1.1.1.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/mozilla-nss-dev el-1.7.13-1.1.1.legacy.i386.rpm
Mozilla Browser 1.6
-
Mandriva lib64nspr4-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva lib64nspr4-devel-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva lib64nss3-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva lib64nss3-devel-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva libnspr4-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva libnspr4-devel-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva libnss3-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva libnss3-devel-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-1.7.8-0.8.C30mdk.src.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-devel-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-devel-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-dom-inspector-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-dom-inspector-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-enigmail-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-enigmail-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-enigmime-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-enigmime-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-irc-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-irc-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-js-debugger-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-js-debugger-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-mail-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-mail-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-spellchecker-1.7.8-0.8.C30mdk.i586.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
Mandriva mozilla-spellchecker-1.7.8-0.8.C30mdk.x86_64.rpm
Corporate 3.0:
http://www.mandriva.com/en/download -
RedHat devhelp-0.9.1-0.2.10.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/devhelp-0.9.1-0 .2.10.legacy.i386.rpm -
RedHat devhelp-devel-0.9.1-0.2.10.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/devhelp-devel-0 .9.1-0.2.10.legacy.i386.rpm -
RedHat epiphany-1.2.10-0.2.7.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/epiphany-1.2.10 -0.2.7.legacy.i386.rpm -
RedHat mozilla-1.7.13-1.2.1.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/mozilla-1.7.13- 1.2.1.legacy.i386.rpm -
RedHat mozilla-chat-1.7.13-1.2.1.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/mozilla-chat-1. 7.13-1.2.1.legacy.i386.rpm -
RedHat mozilla-devel-1.7.13-1.2.1.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/mozilla-devel-1 .7.13-1.2.1.legacy.i386.rpm -
RedHat mozilla-dom-inspector-1.7.13-1.2.1.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/mozilla-dom-ins pector-1.7.13-1.2.1.legacy.i386.rpm -
RedHat mozilla-js-debugger-1.7.13-1.2.1.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/mozilla-js-debu gger-1.7.13-1.2.1.legacy.i386.rpm -
RedHat mozilla-mail-1.7.13-1.2.1.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/mozilla-mail-1. 7.13-1.2.1.legacy.i386.rpm -
RedHat mozilla-nspr-1.7.13-1.2.1.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/mozilla-nspr-1. 7.13-1.2.1.legacy.i386.rpm -
RedHat mozilla-nspr-devel-1.7.13-1.2.1.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/mozilla-nspr-de vel-1.7.13-1.2.1.legacy.i386.rpm -
RedHat mozilla-nss-1.7.13-1.2.1.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/mozilla-nss-1.7 .13-1.2.1.legacy.i386.rpm -
RedHat mozilla-nss-devel-1.7.13-1.2.1.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/mozilla-nss-dev el-1.7.13-1.2.1.legacy.i386.rpm
SCO Unixware 7.1.4
-
SCO SCOSA-2006.26
UnixWare 7.1.3
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2006.26
S.u.S.E. Linux Professional 9.3
-
SuSE mozilla-1.7.11-9.5.i586.rpm
SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/mozilla-1.7.11-9 .5.i586.rpm -
SuSE mozilla-1.7.5-17.10.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/mozilla-1.7.5-17. 10.i586.rpm -
SuSE mozilla-calendar-1.7.5-17.10.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/mozilla-calendar- 1.7.5-17.10.i586.rpm -
SuSE mozilla-devel-1.7.5-17.10.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/mozilla-devel-1.7 .5-17.10.i586.rpm -
SuSE mozilla-dom-inspector-1.7.5-17.10.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/mozilla-dom-inspe ctor-1.7.5-17.10.i586.rpm -
SuSE mozilla-irc-1.7.5-17.10.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/mozilla-irc-1.7.5 -17.10.i586.rpm -
SuSE mozilla-mail-1.7.5-17.10.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/mozilla-mail-1.7. 5-17.10.i586.rpm -
SuSE mozilla-spellchecker-1.7.5-17.10.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/mozilla-spellchec ker-1.7.5-17.10.i586.rpm -
SuSE mozilla-venkman-1.7.5-17.10.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/mozilla-venkman-1 .7.5-17.10.i586.rpm -
SuSE MozillaFirefox-1.0.8-0.2.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/MozillaFirefox-1. 0.8-0.2.i586.rpm -
SuSE MozillaFirefox-translations-1.0.8-0.2.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/MozillaFirefox-tr anslations-1.0.8-0.2.i586.rpm -
SuSE MozillaThunderbird-1.0.8-0.2.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/MozillaThunderbir d-1.0.8-0.2.i586.rpm -
SuSE MozillaThunderbird-1.0.8-0.2.x86_64.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/MozillaThunderb ird-1.0.8-0.2.x86_64.rpm
References
Mozilla Suite, Firefox, SeaMonkey, and Thunderbird Multiple Remote Vulnerabilities
References:
References:
- 102550 - Multiple Security Vulnerabilites in Mozilla 1.4 and 1.7 for Solaris and (Sun)
- Cisco NX-OS Download Page (Cisco)
- HPSBUX02122 SSRT061158 rev.1 - HP-UX Mozilla Remote Execution of Arbitrary Code, (HP)
- HPSBUX02153 SSRT061181 rev.1 - HP-UX Running Firefox, Remote Unauthorized Access (Hewlett-Packard )
- HPSBUX02156 SSRT061236 rev.1 - HP-UX Running Thunderbird, Remote Unauthorized Ac (Hewlett-Packard )
- Known Vulnerabilities in Mozilla (Mozilla)
- Mozilla Foundation Security Advisory 2006-09 (Mozilla)
- Mozilla Foundation Security Advisory 2006-10 (Mozilla)
- Mozilla Foundation Security Advisory 2006-11 (Mozilla)
- Mozilla Foundation Security Advisory 2006-12 (Mozilla)
- Mozilla Foundation Security Advisory 2006-13 (Mozilla)
- Mozilla Foundation Security Advisory 2006-14 (Mozilla)
- Mozilla Foundation Security Advisory 2006-15 (Mozilla)
- Mozilla Foundation Security Advisory 2006-16 (Mozilla)
- Mozilla Foundation Security Advisory 2006-17 (Mozilla)
- Mozilla Foundation Security Advisory 2006-18 (Mozilla)
- Mozilla Foundation Security Advisory 2006-19 (Mozilla)
- Mozilla Foundation Security Advisory 2006-20 (Mozilla)
- Mozilla Foundation Security Advisory 2006-22 (Mozilla)
- Mozilla Foundation Security Advisory 2006-23 (Mozilla)
- Mozilla Foundation Security Advisory 2006-24 (Mozilla)
- Mozilla Foundation Security Advisory 2006-25 (Mozilla)
- Mozilla Foundation Security Advisory 2006-26 (Mozilla)
- Mozilla Foundation Security Advisory 2006-27 (Mozilla)
- Mozilla Foundation Security Advisory 2006-28 (Mozilla)
- Mozilla Foundation Security Advisory 2006-29 (Mozilla)
- Mozilla Homepage (Mozilla Foundation)
- Netscape Browser version 8.0.4 and Netscape 7.2 - memory corruption vulnerabili (Mozilla)
- RHSA-2006:0328-11 - Firefox security update (RedHat)
- RHSA-2006:0328-15 - Critical: firefox security update (RedHat)
- RHSA-2006:0329-13 - mozilla security update (Red Hat)
- RHSA-2006:0330-10 - thunderbird security update (RedHat)
- Technical Cyber Security Alert TA06-107A - Mozilla Products Contain Multiple Vul (US-CERT)
- What's New in Firefox 1.5.0.2 (Mozilla)
- ZDI-06-009: Mozilla Firefox Tag Parsing Code Execution Vulnerability ([email protected])
- ZDI-06-010: Mozilla Firefox CSS Letter-Spacing Heap Overflow Vulnerability ([email protected])
- ZDI-06-011: Mozilla Firefox Table Rebuilding Code Execution Vulnerability ([email protected])
- HPSBUX02153 SSRT061181 rev.5 - HP-UX Running Firefox, Remote Unauthorized Access (HP)
- HPSBUX02156 SSRT061236 rev.2 - HP-UX Running (HP)
- HPSBUX02156 SSRT061236 rev.3 - HP-UX Running Thunderbird, Remote Unauthorized Ac (HP)
- Solution 228526: Multiple Security Vulnerabilites in Mozilla 1.4 and 1.7 for Sol (Sun)
- Sun Alert ID: 102763 - Multiple Security Vulnerabilites in Mozilla 1.7 for Solar (Sun)