CERT mailing list archives

Current Activity - Mozilla Releases Firefox 3.0.15 and Firefox 3.5.4


From: Current Activity <us-cert () us-cert gov>
Date: Wed, 28 Oct 2009 10:18:47 -0400

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

US-CERT Current Activity

Mozilla Releases Firefox 3.0.15 and Firefox 3.5.4

Original release date: October 28, 2009 at 9:13 am
Last revised: October 28, 2009 at 9:13 am


Mozilla has released Firefox 3.0.15 and Firefox 3.5.4 to address
multiple vulnerabilities. Exploitation of these vulnerabilities may
allow an attacker to execute arbitrary code, execute arbitrary
JavaScript with chrome privileges, or cause a denial-of-service
condition. As described in the Mozilla Foundation Security Advisories,
some of these vulnerabilities may also affect SeaMonkey.

US-CERT encourages users to review the Mozilla Foundation security
advisories for Firefox 3.0 and Firefox 3.5 and apply any necessary
updates or workarounds to help mitigate the risks.

Relevant Url(s):
<http://www.mozilla.org/security/known-vulnerabilities/firefox35.html>

<http://www.mozilla.org/security/known-vulnerabilities/firefox30.html>

====
This entry is available at
http://www.us-cert.gov/current/index.html#mozilla_releases_firefox_3_01

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)

iQEVAwUBSuhSsducaIvSvh1ZAQJNnAf+NcpjIG16x5Q0iIRVdaroJqg7v+psUeFN
aUGePzHyjQqdLq1ZO3YqCQFBwzzNe165bt15Bgurz5N04kgt45hKjxNtexR9WCw+
iTCEiLvEm0GZnK6nalZq1qrmoymbu8IXOcX14uiYvnH9kSNQhDtpwDlCo6YydHPp
OPSxn8LHj8FgcQbZSYqoCSrq8dVyTOc8sX6d4/6NVRXVV/ABC93j0JDV2LcnkVzS
vr1Y+lO//AXa0VpTLe8E/gSFrrwknqtmHclrotWG2CRz60PFJ7/ryvVvVHdjK0K7
DTVPkeRQEaFGA/VyKhEydMezBoMUIgf4/AUvUgvVYkj+uN3iP8mpgQ==
=hNtq
-----END PGP SIGNATURE-----


Current thread: