Various flaws have been reported that allow an attacker to execute arbitrary code with user privileges by tricking the user into opening a malicious email containing JavaScript
Get the latest Linux and open source security news straight to your inbox.