U radu poznatog Internet preglednika Mozilla Firefox otkriveno je nekoliko sigurnosnih propusta koji se mogu iskoristiti za udaljeno izvođenje DoS napada i pokretanje proizvoljnog programskog koda.
Neki od otkrivenih propusta su uzrokovani greškama pri obradi HTML koda, SVG (eng. Scalable Vector Graphics) objekata, DOM elemenata i JavaScript koda.
Posljedica:
Sve propuste mogu iskoristiti udaljeni zlonamjerni korisnici za izvođenje DoS napada i pokretanje proizvoljnog programskog koda.
Rješenje:
Korisnicima se savjetuje korištenje osvježenih inačica.
CentOS Errata and Security Advisory CESA-2011:1164
firefox security update for CentOS 4 i386:
https://rhn.redhat.com/errata/RHSA-2011-1164.html
The following updated file has been uploaded and is currently syncing to
the mirrors:
i386:
updates/i386/RPMS/firefox-3.6.20-2.el4.centos.i386.rpm
source:
updates/SRPMS/firefox-3.6.20-2.el4.centos.src.rpm
You may update your CentOS-4 i386 installations by running the command:
yum update firefox
Tru
--
Tru Huynh (mirrors, CentOS i386/x86_64 Package Maintenance)
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xBEFA581B
CentOS Errata and Security Advisory CESA-2011:1164
firefox security update for CentOS 4 x86_64:
https://rhn.redhat.com/errata/RHSA-2011-1164.html
The following updated file has been uploaded and is currently syncing to
the mirrors:
x86_64:
updates/x86_64/RPMS/firefox-3.6.20-2.el4.centos.x86_64.rpm
source:
updates/SRPMS/firefox-3.6.20-2.el4.centos.src.rpm
You may update your CentOS-4 x86_64 installations by running the command:
yum update firefox
Tru
--
Tru Huynh (mirrors, CentOS i386/x86_64 Package Maintenance)
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xBEFA581B
Posljednje sigurnosne preporuke