| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.64150 |
| Category: | Ubuntu Local Security Checks |
| Title: | Ubuntu USN-765-1 (xulrunner-1.9) |
| Summary: | Ubuntu USN-765-1 (xulrunner-1.9) |
| Description: | The remote host is missing an update to xulrunner-1.9 announced via advisory USN-765-1. Details follow: It was discovered that the upstream security fixes in USN-764-1 introduced a regression which could cause the browser to crash. If a user were tricked into viewing a malicious website, a remote attacker could cause a denial of service or possibly execute arbitrary code with the privileges of the user invoking the program. Solution: The problem can be corrected by upgrading your system to the following package versions: Ubuntu 8.04 LTS: firefox-3.0 3.0.10+nobinonly-0ubuntu0.8.04.1 xulrunner-1.9 1.9.0.10+nobinonly-0ubuntu0.8.04.1 Ubuntu 8.10: abrowser 3.0.10+nobinonly-0ubuntu0.8.10.1 firefox-3.0 3.0.10+nobinonly-0ubuntu0.8.10.1 xulrunner-1.9 1.9.0.10+nobinonly-0ubuntu0.8.10.1 Ubuntu 9.04: abrowser 3.0.10+nobinonly-0ubuntu0.9.04.1 firefox-3.0 3.0.10+nobinonly-0ubuntu0.9.04.1 xulrunner-1.9 1.9.0.10+nobinonly-0ubuntu0.9.04.1 After a standard system upgrade you need to restart Firefox and any applications that use xulrunner, such as Epiphany, to effect the necessary changes. http://www.securityspace.com/smysecure/catid.html?in=USN-765-1 |
| Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2009-1313 http://www.mandriva.com/security/advisories?name=MDVSA-2009:111 RedHat Security Advisories: RHSA-2009:0449 https://rhn.redhat.com/errata/RHSA-2009-0449.html http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.350967 http://www.ubuntu.com/usn/USN-765-1 BugTraq ID: 34743 http://www.securityfocus.com/bid/34743 http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10446 http://securitytracker.com/id?1022126 http://securitytracker.com/id?1022127 http://secunia.com/advisories/34919 http://secunia.com/advisories/34910 http://secunia.com/advisories/34851 http://secunia.com/advisories/34866 http://www.vupen.com/english/advisories/2009/1180 |
| Copyright | Copyright (c) 2009 E-Soft Inc. http://www.securityspace.com |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|