[FEDORA-2009-9494] Fedora 10: epiphany, epiphany-extensions, Miro, ruby-gnome2, blam & 13 more

Severity High
Affected Packages 18
CVEs 9

Update to new upstream Firefox version 3.0.14, fixing multiple security issues
detailed in the upstream advisories: http://www.mozilla.org/security/known-
vulnerabilities/firefox30.html#firefox3.0.14 Update also includes all
packages depending on gecko-libs rebuilt against new version of Firefox /
XULRunner.

ID
FEDORA-2009-9494
Severity
high
Severity from
CVE-2009-3070
URL
https://bodhi.fedoraproject.org/updates/FEDORA-2009-9494
Published
2009-09-11T23:28:07
(15 years ago)
Modified
2009-09-11T23:28:07
(15 years ago)
Rights
Copyright 2009 Red Hat, Inc.
Other Advisories
Source # ID Name URL
Bugzilla 521688 Bug #521688 - CVE-2009-3072 Firefox 3.5.3 3.0.14 browser engine crashes https://bugzilla.redhat.com/show_bug.cgi?id=521688
Bugzilla 521693 Bug #521693 - CVE-2009-3077 Firefox 3.5.3 3.0.14 TreeColumns dangling pointer vulnerability https://bugzilla.redhat.com/show_bug.cgi?id=521693
Bugzilla 521686 Bug #521686 - CVE-2009-3070 Firefox 3.5 3.0.14 browser engine crashes https://bugzilla.redhat.com/show_bug.cgi?id=521686
Bugzilla 521692 Bug #521692 - CVE-2009-3076 Firefox 3.0.14 Insufficient warning for PKCS11 module installation and removal https://bugzilla.redhat.com/show_bug.cgi?id=521692
Bugzilla 521694 Bug #521694 - CVE-2009-3078 Firefox 3.5.3 3.0.14 Location bar spoofing via tall line-height Unicode characters https://bugzilla.redhat.com/show_bug.cgi?id=521694
Bugzilla 521690 Bug #521690 - CVE-2009-3074 Firefox 3.5 3.0.14 JavaScript engine crashes https://bugzilla.redhat.com/show_bug.cgi?id=521690
Bugzilla 521687 Bug #521687 - CVE-2009-3071 Firefox 3.5.2 3.0.14 browser engine crashes https://bugzilla.redhat.com/show_bug.cgi?id=521687
Bugzilla 521695 Bug #521695 - CVE-2009-3079 Firefox 3.5.3 3.0.14 Chrome privilege escalation with FeedWriter https://bugzilla.redhat.com/show_bug.cgi?id=521695
Bugzilla 521691 Bug #521691 - CVE-2009-3075 Firefox 3.5.2 3.0.14 JavaScript engine crashes https://bugzilla.redhat.com/show_bug.cgi?id=521691
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/yelp?distro=fedora-10 fedora yelp < 2.24.0.13.fc10 fedora-10
Affected pkg:rpm/fedora/xulrunner?distro=fedora-10 fedora xulrunner < 1.9.0.14.1.fc10 fedora-10
Affected pkg:rpm/fedora/ruby-gnome2?distro=fedora-10 fedora ruby-gnome2 < 0.19.1.2.fc10 fedora-10
Affected pkg:rpm/fedora/perl-Gtk2-MozEmbed?distro=fedora-10 fedora perl-Gtk2-MozEmbed < 0.08.6.fc10.5 fedora-10
Affected pkg:rpm/fedora/pcmanx-gtk2?distro=fedora-10 fedora pcmanx-gtk2 < 0.3.8.13.fc10 fedora-10
Affected pkg:rpm/fedora/mugshot?distro=fedora-10 fedora mugshot < 1.2.2.13.fc10 fedora-10
Affected pkg:rpm/fedora/mozvoikko?distro=fedora-10 fedora mozvoikko < 0.9.5.14.fc10 fedora-10
Affected pkg:rpm/fedora/Miro?distro=fedora-10 fedora Miro < 2.0.5.4.fc10 fedora-10
Affected pkg:rpm/fedora/kazehakase?distro=fedora-10 fedora kazehakase < 0.5.6.4.fc10.6 fedora-10
Affected pkg:rpm/fedora/google-gadgets?distro=fedora-10 fedora google-gadgets < 0.10.5.10.fc10 fedora-10
Affected pkg:rpm/fedora/gnome-web-photo?distro=fedora-10 fedora gnome-web-photo < 0.3.22.fc10 fedora-10
Affected pkg:rpm/fedora/gnome-python2-extras?distro=fedora-10 fedora gnome-python2-extras < 2.19.1.34.fc10 fedora-10
Affected pkg:rpm/fedora/gecko-sharp2?distro=fedora-10 fedora gecko-sharp2 < 0.13.12.fc10 fedora-10
Affected pkg:rpm/fedora/firefox?distro=fedora-10 fedora firefox < 3.0.14.1.fc10 fedora-10
Affected pkg:rpm/fedora/evolution-rss?distro=fedora-10 fedora evolution-rss < 0.1.4.3.fc10 fedora-10
Affected pkg:rpm/fedora/epiphany?distro=fedora-10 fedora epiphany < 2.24.3.10.fc10 fedora-10
Affected pkg:rpm/fedora/epiphany-extensions?distro=fedora-10 fedora epiphany-extensions < 2.24.3.5.fc10 fedora-10
Affected pkg:rpm/fedora/blam?distro=fedora-10 fedora blam < 1.8.5.14.fc10 fedora-10
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...