Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora: 2009-3099 Moderate: Firefox Memory Flaw Remote Execution Risk

fedora
Calendar Grey March 28, 2009
Dist Fedora Esm H88
Severe vulnerability in Chrome affects other browsers like Firefox, posing risks of remote code execution. Use yum for prompt updates to secure systems.
Mozilla Firefox is an open source Web browser

Summary

This is mozvoikko, an extension for Mozilla programs for using the Finnish

spell-checker Voikko.

Mozilla Firefox is an open source Web browser. XULRunner provides the XUL

Runtime environment for Mozilla Firefox. A memory corruption flaw was

discovered in the way Firefox handles XML files containing an XSLT transform. A

remote attacker could use this flaw to crash Firefox or, potentially, execute

arbitrary code as the user running Firefox. (CVE-2009-1169) A flaw was

discovered in the way Firefox handles certain XUL garbage collection events. A

remote attacker could use this flaw to crash Firefox or, potentially, execute

arbitrary code as the user running Firefox. (CVE-2009-1044) This update also

provides depending packages rebuilt against new Firefox version. Miro updates

to upstream 2.0.3. Provides new features and fixes various bugs in 1.2.x series

su -c 'yum update mozvoikko' at the command line.

For more information, refer to "Managing Software with yum",

available at .

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

Fedora-package-announce mailing list

Fedora-package-announce@redhat.com

https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Product: Fedora 9
Version: 0.9.5
Release: 8.fc9
Summary: Finnish Voikko spell-checker extension for Mozilla programs

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here