Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Multiple Firefox vulnerabilities have been fixed
Software Description:
- firefox: Safe and easy web browser from Mozilla
Details:
Bob Clary, Kevin Brosnan, Gary Kwong, Jesse Ruderman, Christian Biesinger,
Bas Schouten, Igor Bukanov, Bill McCloskey, Olli Pettay, Daniel Veditz and
Marcia Knous discovered multiple memory vulnerabilities in the browser
rendering engine. An attacker could possibly execute arbitrary code with
the privileges of the user invoking Firefox. (CVE-2011-2374, CVE-2011-2375)
Martin Barbella discovered that under certain conditions, viewing a XUL
document while JavaScript was disabled caused deleted memory to be
accessed. An attacker could potentially use this to crash Firefox or
execute arbitrary code with the privileges of the user invoking Firefox.
(CVE-2011-2373)
Jordi Chancel discovered a vulnerability on multipart/x-mixed-replace
images due to memory corruption. An attacker could potentially use this to
crash Firefox or execute ar...
The problem can be corrected by updating your system to the following package versions: Ubuntu 11.04: firefox 5.0+build1+nobinonly-0ubuntu0.11.04.1 After a standard system update you need to restart Firefox to make all the necessary changes.
CVE-2011-2366, CVE-2011-2367, CVE-2011-2368, CVE-2011-2369,
CVE-2011-2370, CVE-2011-2371, CVE-2011-2373, CVE-2011-2374,
CVE-2011-2375, CVE-2011-2377
Get the latest Linux and open source security news straight to your inbox.