GLSA Advocate
Joined: 12 May 2004 Posts: 2663
|
Posted: Mon Oct 16, 2006 10:26 am Post subject: [ GLSA 200610-04 ] Seamonkey: Multiple vulnerabilities |
|
|
Gentoo Linux Security Advisory
Title: Seamonkey: Multiple vulnerabilities (GLSA 200610-04)
Severity: normal
Exploitable: remote
Date: October 16, 2006
Bug(s): #147651
ID: 200610-04
Synopsis
The Seamonkey project has reported multiple security vulnerabilities in the
application.
Background
The SeaMonkey project is a community effort to deliver
production-quality releases of code derived from the application
formerly known as 'Mozilla Application Suite'.
Affected Packages
Package: www-client/seamonkey
Vulnerable: < 1.0.5
Unaffected: >= 1.0.5
Architectures: All supported architectures
Description
A number of vulnerabilities have been found and fixed in Seamonkey. For
details please consult the references below.
Impact
The most severe vulnerability involves enticing a user to visit a
malicious website, crashing the application and executing arbitrary
code with the rights of the user running Seamonkey.
Workaround
There is no known workaround at this time.
Resolution
All Seamonkey users should upgrade to the latest version:
Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=www-client/seamonkey-1.0.5" |
References
CVE-2006-4253
CVE-2006-4565
CVE-2006-4566
CVE-2006-4568
CVE-2006-4570
CVE-2006-4571
Last edited by GLSA on Fri Apr 29, 2011 4:22 am; edited 4 times in total |
|