English | Deutsch | Español | Português
 UserID:
 Passwd:
new user
 About:   Dedicated  | Advanced  | Standard  | Recurring  | No Risk  | Desktop  | Basic  | Single  | Security Seal  | FAQ
  Price/Feature Summary  | Order  | New Vulnerabilities  | Confidentiality  | Vulnerability Search
 Vulnerability   
Search   
    Search 75096 CVE descriptions
and 39644 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.67854
Category:Ubuntu Local Security Checks
Title:Ubuntu USN-930-4 (xulrunner-1.9.2)
Summary:Ubuntu USN-930-4 (xulrunner-1.9.2)
Description:The remote host is missing an update to xulrunner-1.9.2
announced via advisory USN-930-4.

A security issue affects the following Ubuntu releases:

Ubuntu 9.04
Ubuntu 9.10

Solution:
The problem can be corrected by upgrading your system to the
following package versions:

Ubuntu 9.04:
abrowser 3.6.7+build2+nobinonly-0ubuntu0.9.04.1
firefox-3.0 3.6.7+build2+nobinonly-0ubuntu0.9.04.1
xulrunner-1.9.2 1.9.2.7+build2+nobinonly-0ubuntu0.9.04.2

Ubuntu 9.10:
firefox-3.5 3.6.7+build2+nobinonly-0ubuntu0.9.10.1
xulrunner-1.9.2 1.9.2.7+build2+nobinonly-0ubuntu0.9.10.2

http://www.securityspace.com/smysecure/catid.html?in=USN-930-4

Risk factor : Critical
Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2008-5913
http://arstechnica.com/news.ars/post/20090113-new-method-of-phishmongering-could-fool-experienced-users.html
http://www.darkreading.com/security/attacks/showArticle.jhtml?articleID=212900161
http://www.infoworld.com/article/09/01/13/Browser_bug_could_allow_phishing_without_email_1.html
http://www.trusteer.com/files/In-session-phishing-advisory-2.pdf
http://lists.fedoraproject.org/pipermail/package-announce/2010-June/043369.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-June/043405.html
http://www.mandriva.com/security/advisories?name=MDVSA-2010:125
http://www.redhat.com/support/errata/RHSA-2010-0500.html
http://www.redhat.com/support/errata/RHSA-2010-0501.html
SuSE Security Announcement: SUSE-SA:2010:030 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2010-07/msg00005.html
http://ubuntu.com/usn/usn-930-1
http://www.ubuntu.com/usn/usn-930-2
BugTraq ID: 33276
http://www.securityfocus.com/bid/33276
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11139
http://secunia.com/advisories/40326
http://secunia.com/advisories/40401
http://secunia.com/advisories/40481
http://www.vupen.com/english/advisories/2010/1551
http://www.vupen.com/english/advisories/2010/1557
http://www.vupen.com/english/advisories/2010/1640
http://www.vupen.com/english/advisories/2010/1773
http://www.vupen.com/english/advisories/2010/1592
Common Vulnerability Exposure (CVE) ID: CVE-2010-0654
http://code.google.com/p/chromium/issues/detail?id=9877
http://scarybeastsecurity.blogspot.com/2009/12/generic-cross-browser-cross-domain.html
http://websec.sv.cmu.edu/css/css.pdf
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11811
Common Vulnerability Exposure (CVE) ID: CVE-2010-1121
http://dvlabs.tippingpoint.com/blog/2010/02/15/pwn2own-2010
http://news.cnet.com/8301-27080_3-20001126-245.html
http://twitter.com/thezdi/statuses/11005277222
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10924
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6844
http://www.securitytracker.com/id?1023817
http://secunia.com/advisories/40323
Common Vulnerability Exposure (CVE) ID: CVE-2010-1125
Bugtraq: 20100313 ...because you can't get enough of clickjacking (Google Search)
http://www.securityfocus.com/archive/1/archive/1/510070/100/0/threaded
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10386
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:13962
http://www.securitytracker.com/id?1024138
Common Vulnerability Exposure (CVE) ID: CVE-2010-1196
BugTraq ID: 41050
http://www.securityfocus.com/bid/41050
BugTraq ID: 41087
http://www.securityfocus.com/bid/41087
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11424
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14017
http://www.securitytracker.com/id?1024139
XForce ISS Database: firefox-nsgenericdomdatanode-bo(59665)
http://xforce.iss.net/xforce/xfdb/59665
Common Vulnerability Exposure (CVE) ID: CVE-2010-1197
http://www.redhat.com/support/errata/RHSA-2010-0499.html
BugTraq ID: 41103
http://www.securityfocus.com/bid/41103
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10168
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14186
http://www.vupen.com/english/advisories/2010/1556
XForce ISS Database: firefox-contentdisposition-security-bypass(59667)
http://xforce.iss.net/xforce/xfdb/59667
Common Vulnerability Exposure (CVE) ID: CVE-2010-1198
BugTraq ID: 41102
http://www.securityfocus.com/bid/41102
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10990
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14176
XForce ISS Database: firefox-plugin-instances-code-exec(59664)
http://xforce.iss.net/xforce/xfdb/59664
Common Vulnerability Exposure (CVE) ID: CVE-2010-1199
Bugtraq: 20100623 ZDI-10-113: Mozilla Firefox XSLT Sort Remote Code Execution Vulnerability (Google Search)
http://www.securityfocus.com/archive/1/archive/1/511972/100/0/threaded
http://www.exploit-db.com/exploits/14949
http://www.zerodayinitiative.com/advisories/ZDI-10-113
BugTraq ID: 41082
http://www.securityfocus.com/bid/41082
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10885
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:13287
XForce ISS Database: firefox-xslt-node-code-execution(59666)
http://xforce.iss.net/xforce/xfdb/59666
Common Vulnerability Exposure (CVE) ID: CVE-2010-1200
BugTraq ID: 41090
http://www.securityfocus.com/bid/41090
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10816
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14326
XForce ISS Database: firefox-seamonkey-browser-code-exec(59659)
http://xforce.iss.net/xforce/xfdb/59659
Common Vulnerability Exposure (CVE) ID: CVE-2010-1201
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:12671
Common Vulnerability Exposure (CVE) ID: CVE-2010-1202
BugTraq ID: 41094
http://www.securityfocus.com/bid/41094
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10889
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14308
XForce ISS Database: firefox-javascript-ce(59661)
http://xforce.iss.net/xforce/xfdb/59661
Common Vulnerability Exposure (CVE) ID: CVE-2010-1203
BugTraq ID: 41099
http://www.securityfocus.com/bid/41099
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10401
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8317
XForce ISS Database: mozilla-firefox-javascript-ce(59662)
http://xforce.iss.net/xforce/xfdb/59662
Common Vulnerability Exposure (CVE) ID: CVE-2010-1205
http://lists.vmware.com/pipermail/security-announce/2010/000105.html
http://lists.apple.com/archives/security-announce/2010//Aug/msg00003.html
http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html
http://lists.apple.com/archives/security-announce/2010//Nov/msg00003.html
http://lists.apple.com/archives/security-announce/2011/Mar/msg00000.html
http://lists.apple.com/archives/security-announce/2011//Mar/msg00004.html
Debian Security Information: DSA-2072 (Google Search)
http://www.debian.org/security/2010/dsa-2072
http://lists.fedoraproject.org/pipermail/package-announce/2010-July/044283.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-July/044397.html
http://www.mandriva.com/security/advisories?name=MDVSA-2010:133
http://slackware.com/security/viewer.php?l=slackware-security&y=2010&m=slackware-security.613061
SuSE Security Announcement: SUSE-SR:2010:017 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html
http://www.ubuntu.com/usn/USN-960-1
BugTraq ID: 41174
http://www.securityfocus.com/bid/41174
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11851
http://secunia.com/advisories/40302
http://secunia.com/advisories/40472
http://secunia.com/advisories/40547
http://secunia.com/advisories/41574
http://secunia.com/advisories/42317
http://secunia.com/advisories/42314
http://secunia.com/advisories/40336
http://www.vupen.com/english/advisories/2010/1612
http://www.vupen.com/english/advisories/2010/1755
http://www.vupen.com/english/advisories/2010/1837
http://www.vupen.com/english/advisories/2010/1846
http://www.vupen.com/english/advisories/2010/1877
http://www.vupen.com/english/advisories/2010/2491
http://www.vupen.com/english/advisories/2010/3045
http://www.vupen.com/english/advisories/2010/3046
http://www.vupen.com/english/advisories/2010/1637
XForce ISS Database: libpng-rowdata-bo(59815)
http://xforce.iss.net/xforce/xfdb/59815
Common Vulnerability Exposure (CVE) ID: CVE-2010-1206
http://lcamtuf.blogspot.com/2010/06/yeah-about-that-address-bar-thing.html
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8248
http://secunia.com/advisories/40283
Common Vulnerability Exposure (CVE) ID: CVE-2010-1207
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11887
Common Vulnerability Exposure (CVE) ID: CVE-2010-1208
Bugtraq: 20100721 ZDI-10-134: Mozilla Firefox DOM Attribute Cloning Remote Code Execution Vulnerability (Google Search)
http://www.securityfocus.com/archive/1/512515
http://www.zerodayinitiative.com/advisories/ZDI-10-134/
BugTraq ID: 41849
http://www.securityfocus.com/bid/41849
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11740
Common Vulnerability Exposure (CVE) ID: CVE-2010-1209
Bugtraq: 20100721 ZDI-10-130: Mozilla Firefox NodeIterator Remote Code Execution Vulnerability (Google Search)
http://www.securityfocus.com/archive/1/512511
http://www.zerodayinitiative.com/advisories/ZDI-10-130/
BugTraq ID: 41845
http://www.securityfocus.com/bid/41845
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11055
Common Vulnerability Exposure (CVE) ID: CVE-2010-1210
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11863
Common Vulnerability Exposure (CVE) ID: CVE-2010-1211
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11552
Common Vulnerability Exposure (CVE) ID: CVE-2010-1212
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11771
Common Vulnerability Exposure (CVE) ID: CVE-2010-1213
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11835
Common Vulnerability Exposure (CVE) ID: CVE-2010-1214
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11685
Common Vulnerability Exposure (CVE) ID: CVE-2010-1215
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11527
Common Vulnerability Exposure (CVE) ID: CVE-2010-2751
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11688
Common Vulnerability Exposure (CVE) ID: CVE-2010-2752
Bugtraq: 20100721 ZDI-10-133: Mozilla Firefox CSS font-face Remote Code Execution Vulnerability (Google Search)
http://www.securityfocus.com/archive/1/512514
http://www.zerodayinitiative.com/advisories/ZDI-10-133/
BugTraq ID: 41852
http://www.securityfocus.com/bid/41852
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11680
Common Vulnerability Exposure (CVE) ID: CVE-2010-2753
Bugtraq: 20100721 ZDI-10-131: Mozilla Firefox nsTreeSelection Dangling Pointer Remote Code Execution Vulnerability (Google Search)
http://www.securityfocus.com/archive/1/512510
http://www.zerodayinitiative.com/advisories/ZDI-10-131/
SuSE Security Announcement: SUSE-SA:2010:049 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2010-10/msg00002.html
BugTraq ID: 41853
http://www.securityfocus.com/bid/41853
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10958
Common Vulnerability Exposure (CVE) ID: CVE-2010-2754
http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11770
CopyrightCopyright (c) 2010 E-Soft Inc. http://www.securityspace.com

This is only one of 39644 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.

New User Registration
Email:
UserID:
Passwd:
Please email me your monthly newsletters, informing the latest services, improvements & surveys.
Please email me a vulnerability test announcement whenever a new test is added.
   Privacy
Registered User Login
 
UserID:   
Passwd:  

 Forgot userid or passwd?
Email/Userid:




Home | About Us | Contact Us | Partner Programs | Privacy | Mailing Lists | Abuse
Security Audits | Managed DNS | Network Monitoring | Site Analyzer | Internet Research Reports
Web Probe | Whois

© 1998-2014 E-Soft Inc. All rights reserved.