Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 9: 2009-3099 Critical: Firefox Memory Issues Exploited

fedora
Calendar Grey March 27, 2009
Dist Fedora Esm H88
The latest Fedora 9 patch resolves several memory-related vulnerabilities in Firefox, mitigating possible risks of code execution.
Mozilla Firefox is an open source Web browser

Summary

This is mozvoikko, an extension for Mozilla programs for using the Finnish

spell-checker Voikko.

Mozilla Firefox is an open source Web browser. XULRunner provides the XUL

Runtime environment for Mozilla Firefox. A memory corruption flaw was

discovered in the way Firefox handles XML files containing an XSLT transform. A

remote attacker could use this flaw to crash Firefox or, potentially, execute

arbitrary code as the user running Firefox. (CVE-2009-1169) A flaw was

discovered in the way Firefox handles certain XUL garbage collection events. A

remote attacker could use this flaw to crash Firefox or, potentially, execute

arbitrary code as the user running Firefox. (CVE-2009-1044) This update also

provides depending packages rebuilt against new Firefox version. Miro updates

to upstream 2.0.3. Provides new features and fixes various bugs in 1.2.x series

su -c 'yum update mozvoikko' at the command line.

For more information, refer to "Managing Software with yum",

available at .

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

Fedora-package-announce mailing list

Fedora-package-announce@redhat.com

https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 9
Version: 0.9.5
Release: 8.fc9
Summary: Finnish Voikko spell-checker extension for Mozilla programs

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here