Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:
Category:Fedora Local Security Checks
Title:Fedora Core 7 FEDORA-2007-1143 (devhelp)

The remote host is missing an update to devhelp
announced via advisory FEDORA-2007-1143.

An API document browser for GNOME 2.

Update Information:

Updated firefox packages that fix several security bugs are now available for Fedora Core 7.

Users of devhelp are advised to upgrade to these erratum packages, which contain an update to devhelp built against the updated Firefox packages.

* Wed Jul 18 2007 Kai Engert - 0.13-9
- Rebuild against newer gecko
* Fri May 25 2007 Christopher Aillon - 0.13-8
- Rebuild against newer gecko
* Mon Apr 23 2007 Matthew Barnes - 0.13-7.fc7
- Add patch for RH bug #230837 (initialize GThread).
* Sat Apr 21 2007 Matthias Clasen - 0.13-6
- Don't install INSTALL

[ 1 ] Bug #248518
[ 2 ] CVE-2007-3734
[ 3 ] CVE-2007-3735
[ 4 ] CVE-2007-3736
[ 5 ] CVE-2007-3089
[ 6 ] CVE-2007-3737
[ 7 ] CVE-2007-3656
[ 8 ] CVE-2007-3738
Updated packages:

5c90bfb01d8e60b69b1d6e74b06a2a9d7efcc27c devhelp-0.13-9.fc7.ppc64.rpm
44f042224af1501d7448a6018c4a7825280da6e4 devhelp-debuginfo-0.13-9.fc7.ppc64.rpm
29ac42827a0920997a73b8077ae22e6654ffb899 devhelp-devel-0.13-9.fc7.ppc64.rpm
6b8eabc0c996cc89be3955b3e9af5ea5300f5db1 devhelp-0.13-9.fc7.i386.rpm
b4ed597d322cb64b15256fca3a7433790ea9730f devhelp-debuginfo-0.13-9.fc7.i386.rpm
0292f769ac3459b66ccfa098f14fd5c1cf56dd09 devhelp-devel-0.13-9.fc7.i386.rpm
d8272e6473e84396aa5ad427b95a724d855ca11f devhelp-debuginfo-0.13-9.fc7.x86_64.rpm
1d3b350571be45d513e35ae95ee9902ca543db90 devhelp-devel-0.13-9.fc7.x86_64.rpm
1b2d4c4a4f9ed220b35f05f88aa75663be7e6062 devhelp-0.13-9.fc7.x86_64.rpm
79f4ff23ce4319f0c44fcdde88e34de616ffa5cb devhelp-0.13-9.fc7.ppc.rpm
836ef5fe7750396e8dd3045426285c6c394f369b devhelp-devel-0.13-9.fc7.ppc.rpm
84730f97688c63358e50bff42645a77d2622d54a devhelp-debuginfo-0.13-9.fc7.ppc.rpm
16ad3dc4148f71daccd19e141aed38e057cd1f87 devhelp-0.13-9.fc7.src.rpm

This update can be installed with the 'yum' update program. Use 'yum update
package-name' at the command line. For more information, refer to 'Managing
Software with yum,' available at

Solution: Apply the appropriate updates.

Risk factor : Critical

CVSS Score:

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2007-3734
BugTraq ID: 24946
Bugtraq: 20070720 rPSA-2007-0148-1 firefox thunderbird (Google Search)
Bugtraq: 20070724 FLEA-2007-0033-1: firefox thunderbird (Google Search)
Debian Security Information: DSA-1337 (Google Search)
Debian Security Information: DSA-1338 (Google Search)
Debian Security Information: DSA-1339 (Google Search)
Debian Security Information: DSA-1391 (Google Search)
HPdes Security Advisory: HPSBUX02153
HPdes Security Advisory: HPSBUX02156
HPdes Security Advisory: SSRT061181
HPdes Security Advisory: SSRT061236
SGI Security Advisory: 20070701-01-P
SuSE Security Announcement: SUSE-SA:2007:049 (Google Search)
XForce ISS Database: mozilla-browser-engine-code-execution(35458)
Common Vulnerability Exposure (CVE) ID: CVE-2007-3735
XForce ISS Database: mozilla-javascript-eng-code-execution(35459)
Common Vulnerability Exposure (CVE) ID: CVE-2007-3736
XForce ISS Database: mozilla-addeventlistener-settimeout-xss(35462)
Common Vulnerability Exposure (CVE) ID: CVE-2007-3089
BugTraq ID: 24286
Bugtraq: 20070604 Assorted browser vulnerabilities (Google Search)
Cert/CC Advisory: TA07-199A
CERT/CC vulnerability note: VU#143297
XForce ISS Database: firefox-iframe-security-bypass(34701)
Common Vulnerability Exposure (CVE) ID: CVE-2007-3737
XForce ISS Database: firefox-eventhandler-code-execution(35461)
Common Vulnerability Exposure (CVE) ID: CVE-2007-3656
BugTraq ID: 24831
Bugtraq: 20070709 Firefox wyciwyg:// cache zone bypass (Google Search)
XForce ISS Database: mozilla-wyciwyg-security-bypass(35298)
Common Vulnerability Exposure (CVE) ID: CVE-2007-3738
SuSE Security Announcement: SUSE-SA:2007:057 (Google Search)
XForce ISS Database: firefox-xpcnativewrapper-code-execution(35460)
CopyrightCopyright (c) 2007 E-Soft Inc.

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.

© 1998-2022 E-Soft Inc. All rights reserved.