Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:
Category:Fedora Local Security Checks
Title:Fedora Core 11 FEDORA-2009-13333 (firefox)
The remote host is missing an update to firefox
announced via advisory FEDORA-2009-13333.

For details, please visit the referenced advisories.


* Wed Dec 16 2009 Jan Horak - 3.5.6-1
- Update to 3.5.6
* Thu Nov 5 2009 Jan Horak - 3.5.5-1
- Update to 3.5.5
* Mon Oct 26 2009 Jan Horak - 3.5.4-1
- Updated to 3.5.4


[ 1 ] Bug #546694 - CVE-2009-3979 Mozilla crash with evidence of memory corruption
[ 2 ] Bug #546720 - CVE-2009-3983 Mozilla NTLM reflection vulnerability
[ 3 ] Bug #546722 - CVE-2009-3984 Mozilla SSL spoofing with document.location and empty SSL response page
[ 4 ] Bug #546726 - CVE-2009-3985 Mozilla URL spoofing via invalid document.location
[ 5 ] Bug #546724 - CVE-2009-3986 Mozilla Chrome privilege escalation via window.opener

Solution: Apply the appropriate updates.

This update can be installed with the yum update program. Use
su -c 'yum update firefox' at the command line.
For more information, refer to Managing Software with yum,
available at

CVSS Score:

CVSS Vector:

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2009-3979
BugTraq ID: 37349
BugTraq ID: 37361
Debian Security Information: DSA-1956 (Google Search)
RedHat Security Advisories: RHSA-2009:1673
RedHat Security Advisories: RHSA-2009:1674
SuSE Security Announcement: SUSE-SA:2009:063 (Google Search)
XForce ISS Database: mozilla-seamonkey-browser-code-exec(54799)
Common Vulnerability Exposure (CVE) ID: CVE-2009-3980
BugTraq ID: 37362
XForce ISS Database: firefox-browser-eng-code-exec(54800)
Common Vulnerability Exposure (CVE) ID: CVE-2009-3982
BugTraq ID: 37364
XForce ISS Database: firefox-javascript-eng-code-exec(54802)
Common Vulnerability Exposure (CVE) ID: CVE-2009-3983
BugTraq ID: 37366
SuSE Security Announcement: SUSE-SR:2010:013 (Google Search)
XForce ISS Database: firefox-ntlm-reflection(54807)
Common Vulnerability Exposure (CVE) ID: CVE-2009-3984
BugTraq ID: 37367
XForce ISS Database: firefox-documentlocation-ssl-spoofing(54806)
Common Vulnerability Exposure (CVE) ID: CVE-2009-3985
BugTraq ID: 37370
XForce ISS Database: firefox-documentlocation-spoofing(54808)
Common Vulnerability Exposure (CVE) ID: CVE-2009-3986
BugTraq ID: 37365
XForce ISS Database: firefox-windowopener-code-execution(54803)
Common Vulnerability Exposure (CVE) ID: CVE-2009-3388
BugTraq ID: 37369
XForce ISS Database: mozilla-liboggplay-code-execution(54804)
Common Vulnerability Exposure (CVE) ID: CVE-2009-3389
BugTraq ID: 37368
SuSE Security Announcement: SUSE-SR:2010:008 (Google Search)
XForce ISS Database: mozilla-theora-bo(54805)
CopyrightCopyright (c) 2009 E-Soft Inc.

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.

© 1998-2022 E-Soft Inc. All rights reserved.