Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
89

Fedora 7: FEDORA-2007-3952 Critical: Firefox Cross-Site Scripting

Updated firefox packages that fix several security issues are now available for Fedora 7. This update has been rated as having critical security impact by the Fedora Security Response Team. Mozilla Firefox is an open source Web browser. A cross-site scripting flaw was found in the way Firefox handled the jar: URI scheme. It was possible for a malicious website to leverage this flaw and conduct a cross-site scripting attack against a user running Firefox. (CVE-2007-5947) . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2007-3952 2007-11-29 01:44:21.449766 --------------------------------------------------------------------------------Name : liferea Product : Fedora 7 Version : 1.4.8 Release : 2.fc7 URL : Summary : An RSS/RDF feed reader Description : Liferea (Linux Feed Reader) is an RSS/RDF feed reader. It's intended to be a clone of the Windows-only FeedReader. It can be used to maintain a list of subscribed feeds, browse through their items, and show their contents. --------------------------------------------------------------------------------Update Information: Updated firefox packages that fix several security issues are now available for Fedora 7. This update has been rated as having critical security impact by the Fedora Security Response Team. Mozilla Firefox is an open source Web browser. A cross-site scripting flaw was found in the way Firefox handled the jar: URI scheme. It was possible for a malicious website to leverage this flaw and conduct a cross-site scripting attack against a user running Firefox. (CVE-2007-5947) Several flaws were found in the way Firefox processed certain malformed web content. A webpage containing malicious content could cause Firefox to crash, or potentially execute arbitrary code as the user running Firefox. (CVE-2007-5959) A race condition existed when Firefox set the "window.location" property for a webpage. This flaw could allow awebpage to set an arbitrary Referer header, which may lead to a Cross-site Request Forgery (CSRF) attack against websites that rely only on the Referer header for protection. (CVE-2007-5960) Users of Firefox are advised to upgrade to these updated packages, which contain backported patches to resolve these issues. --------------------------------------------------------------------------------ChangeLog: * Tue Nov 27 2007 Christopher Aillon - 1.4.8-2 - Rebuild against newer gecko --------------------------------------------------------------------------------Updated packages: 9f1c924945c9747560f31e36face0ca490b770c4 liferea-1.4.8-2.fc7.ppc64.rpm 1cb69c699f34a6316f06faccee5647d701a14e93 liferea-debuginfo-1.4.8-2.fc7.ppc64.rpm bc0ee372b0ccc34292e6fbf086ed5c392a90fb5c liferea-1.4.8-2.fc7.i386.rpm da40d224fc3ce1d39c1b44b2add512fd01721087 liferea-debuginfo-1.4.8-2.fc7.i386.rpm 2156d38c78babed912d7272a95979dd7a033a4d8 liferea-debuginfo-1.4.8-2.fc7.x86_64.rpm e89988f449bf88fbcac321fcdf0460ec8918afe4 liferea-1.4.8-2.fc7.x86_64.rpm 26c81b423032ea3c46271f35476178012410512b liferea-debuginfo-1.4.8-2.fc7.ppc.rpm d4d6fca0abe8266fdb672aed74086fa324001890 liferea-1.4.8-2.fc7.ppc.rpm 848d984ada76801c6e983502b443f8cd26b9f6bb liferea-1.4.8-2.fc7.src.rpm This update can be installed with the "yum" update program. Use su -c 'yum update liferea' at the command line. For more information, refer to "Managing Software with yum", available at . --------------------------------------------------------------------------------_______________________________________________ Fedora-package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Important updates for Firefox address several security issues in Fedora 7, such as vulnerabilities related to cross-site scripting and additional problems.. Firefox Security Update, Liferea Update, Fedora Packages. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 28, 2007 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here