Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Fedora 11: FEDORA-2009-7898 Critical: Firefox Security Flaws

fedora
Calendar Grey July 22, 2009
Dist Fedora Esm H88
The latest upgrade of Firefox to version 3.5.1 on Fedora 11 addresses several vulnerabilities associated with OpenJDK and the Gecko rendering engine.
Update to new upstream Firefox version 3.5.1, fixing multiple security issues detailed in the upstream advisories: https://www.mozilla.org/en-US/security/known-vulnerabilities/...

Summary

The OpenJDK runtime environment.

Update Information:

Update to new upstream Firefox version 3.5.1, fixing multiple security issues detailed in the upstream advisories: https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-3.5/ Update also includes all packages depending on gecko-libs rebuilt against new version of Firefox / XULRunner.

Change Log

* Fri Jul 17 2009 Jan Horak - 1:1.6.0.0-25.b16 - Rebuild against newer gecko * Thu Jul 9 2009 Lillian Angel - 1:1.6.0-24.b16 - Added java-1.6.0-openjdk-netx.patch - Moved policytool to devel package. - Updated release. - Resolves: rhbz#507870 - Resolves: rhbz#471346 * Tue Jun 30 2009 Christopher Aillon - 1:1.6.0.0-23.b16 - Rebuild against newer gecko * Fri May 29 2009 Lillian Angel - 1:1.6.0-22.b16 - Fixed abs-install-dir to be %{_jvmdir}/java-1.6.0-openjdk-1.6.0.0 * Tue May 19 2009 Lillian Angel - 1:1.6.0-21.b16 - Removed java-1.6.0-openjdk-lcms.patch java-1.6.0-openjdk-securitypatches.patch java-1.6.0-openjdk-pulsejava.patch. - Updated visualvm source. - Updated sparc patches. - Updated release. - Updated icedteaver. - Updated openjdkver. - Updated openjdkdate. - Adjusted buildoutputdir. - Set runtests to 0. Hanging test causing problems. - Include systemtap support, install hotspot tapset. - Resolves: rhbz#479041 - Resolves: rhbz#480075 - Resolves: rhbz#483095 - Resolves: rhbz#487872 - Resolves: rhbz#467591 - Resolves: rhbz#487452 - Resolves: rhbz#498109 - Resolves: rhbz#497191 - Resolves: rhbz#462876 - Resolves: rhbz#489586 - Resolves: rhbz#501391 * Wed May 6 2009 Lillian Angel - 1:1.6.0.0-20.b14 - Added devel requirement for netbeans-platform

References


[ 1 ] Bug #511228 - CVE-2009-2477 CVE-2009-2478 CVE-2009-2479 firefox 3.5 various flaws https://bugzilla.redhat.com/show_bug.cgi?id=511228

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update java-1.6.0-openjdk' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: java-1.6.0-openjdk
Product: Fedora 11
Version: 1.6.0.0
Release: 25.b16.fc11
Summary: OpenJDK Runtime Environment

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here