Before applying this update, make sure all previously-released errata
relevant to your system have been applied.
This update is available via the Red Hat Network. Details on how to
use the Red Hat Network to apply this update are available at
SeaMonkey is an open source web browser, email and newsgroup client, IRC
chat client, and HTML editor.
An invalid free flaw was found in SeaMonkey's plugin handler. Malicious web
content could result in an invalid memory pointer being freed, causing
SeaMonkey to crash or, potentially, execute arbitrary code with the
privileges of the user running SeaMonkey. (CVE-2010-2755)
All SeaMonkey users should upgrade to these updated packages, which correct
this issue. After installing the update, SeaMonkey must be restarted for
the changes to take effect.
https://access.redhat.com/security/cve/CVE-2010-2755 https://access.redhat.com/security/updates/classification#critical
Red Hat Enterprise Linux AS version 3:
Source:
i386:
seamonkey-1.0.9-0.58.el3.i386.rpm
seamonkey-chat-1.0.9-0.58.el3.i386.rpm
seamonkey-debuginfo-1.0.9-0.58.el3.i386.rpm
seamonkey-devel-1.0.9-0.58.el3.i386.rpm
seamonkey-dom-inspector-1.0.9-0.58.el3.i386.rpm
seamonkey-js-debugger-1.0.9-0.58.el3.i386.rpm
seamonkey-mail-1.0.9-0.58.el3.i386.rpm
seamonkey-nspr-1.0.9-0.58.el3.i386.rpm
seamonkey-nspr-devel-1.0.9-0.58.el3.i386.rpm
seamonkey-nss-1.0.9-0.58.el3.i386.rpm
seamonkey-nss-devel-1.0.9-0.58.el3.i386.rpm
ia64:
seamonkey-1.0.9-0.58.el3.ia64.rpm
seamonkey-chat-1.0.9-0.58.el3.ia64.rpm
seamonkey-debuginfo-1.0.9-0.58.el3.i386.rpm
seamonkey-debuginfo-1.0.9-0.58.el3.ia64.rpm
seamonkey-devel-1.0.9-0.58.el3.ia64.rpm
seamonkey-dom-inspector-1.0.9-0.58.el3.ia64.rpm
seamonkey-js-debugger-1.0.9-0.58.el3.ia64.rpm
seamonkey-mail-1.0.9-0.58.el3.ia64.rpm
seamonkey-nspr-1.0.9-0.58.el3.i386.rpm
seamonkey-nspr-1.0.9-0.58.el3.ia64.rpm
seamonkey-nspr-devel-1.0.9-0.58.el3.ia64.rpm
seamonkey-nss-1.0.9-0.58.el3.i386.rpm
seamonkey-nss-1.0.9-0.58.el3.ia64.rpm
seamonkey-nss-devel-1.0.9-0.58.el3.ia64.rpm
ppc:
seamonkey-1.0.9-0.58.el3.ppc.rpm
seamonkey-chat-1.0.9-0.58.el3.ppc.rpm
seamonkey-debuginfo-1.0.9-0.58.el3.ppc.rpm
seamonkey-devel-1.0.9-0.58.el3.ppc.rpm
Read the Full Advisory
Updated seamonkey packages that fix a security issue are nowavailable for Red Hat Enterprise Linux 3 and 4.The Red Hat Security Response Team has rated this update as having criticalsecurity impact. Common Vulnerability Scoring System (CVSS) base scores,which give detailed severity ratings, are available for each vulnerabilityfrom the CVE links in the References section.
Red Hat Desktop version 3 - i386, x86_64
Red Hat Enterprise Linux AS version 3 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Enterprise Linux Desktop version 4 - i386, x86_64
Red Hat Enterprise Linux ES version 3 - i386, ia64, x86_64
Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 3 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64
617657 - CVE-2010-2755 Mozilla arbitrary free flaw
Get the latest Linux and open source security news straight to your inbox.