From fd3d40ffecb06f2280963f87b1f04912be186b0b Mon Sep 17 00:00:00 2001 From: Andrew Pantyukhin Date: Mon, 28 Apr 2008 17:14:17 +0000 Subject: - A new Firefox vulnerability currently affects 10 of our ports, on average. A new VuXML entry usually forgets about 8 of them. Wiki: http://wiki.freebsd.org/VuXML --- security/vuxml/vuln.xml | 34 ++++++++++++++++++++++++++++------ 1 file changed, 28 insertions(+), 6 deletions(-) (limited to 'security') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 84b926e56121..f97fb6ca43b9 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -212,7 +212,7 @@ Note: Please add new entries to the beginning of this file. - firefox -- javascript harbage collector vulnerability + firefox -- javascript garbage collector vulnerability firefox @@ -222,17 +222,38 @@ Note: Please add new entries to the beginning of this file. linux-firefox 2.0.0.14 + + seamonkey + linux-seamonkey + 1.1.10 + + + flock + linux-flock + 1.1.2 + + + linux-firefox-devel + linux-seamonkey-devel + 0 + + + thunderbird + linux-thunderbird + 2.0.0.14 +

Mozilla Foundation reports:

Fixes for security problems in the JavaScript engine described in - MFSA 2008-15 introduced a stability problem, where some users experienced - crashes during JavaScript garbage collection. This is being fixed primarily - to address stability concerns. We have no demonstration that this particular - crash is exploitable but are issuing this advisory because some crashes of this - type have been shown to be exploitable in the past.

+ MFSA 2008-15 introduced a stability problem, where some users + experienced crashes during JavaScript garbage collection. This is + being fixed primarily to address stability concerns. We have no + demonstration that this particular crash is exploitable but are + issuing this advisory because some crashes of this type have been + shown to be exploitable in the past.

@@ -246,6 +267,7 @@ Note: Please add new entries to the beginning of this file. 2008-04-16 2008-04-25 + 2008-04-28
-- cgit v1.2.3