---------------------------------------------------------------------- Do you have VARM strategy implemented? (Vulnerability Assessment Remediation Management) If not, then implement it through the most reliable vulnerability intelligence source on the market. Implement it through Secunia. For more information visit: http://secunia.com/advisories/business_solutions/ Alternatively request a call from a Secunia representative today to discuss how we can help you with our capabilities contact us at: sales@secunia.com ---------------------------------------------------------------------- TITLE: SUSE update for MozillaFirefox SECUNIA ADVISORY ID: SA37881 VERIFY ADVISORY: http://secunia.com/advisories/37881/ DESCRIPTION: SUSE has issued an update for MozillaFirefox. This fixes some vulnerabilities, which can be exploited by malicious people to conduct spoofing attacks, bypass certain security restrictions, manipulate certain data, disclose sensitive information, or compromise a user's system. For more information: SA37699 SOLUTION: Apply updated packages. x86 Platform: openSUSE 11.2: http://download.opensuse.org/debug/update/11.2/rpm/i586/MozillaFirefox-debuginfo-3.5.6-1.1.1.i586.rpm http://download.opensuse.org/debug/update/11.2/rpm/i586/MozillaFirefox-debugsource-3.5.6-1.1.1.i586.rpm http://download.opensuse.org/debug/update/11.2/rpm/i586/mozilla-xulrunner191-debuginfo-1.9.1.6-1.1.1.i586.rpm http://download.opensuse.org/debug/update/11.2/rpm/i586/mozilla-xulrunner191-debugsource-1.9.1.6-1.1.1.i586.rpm http://download.opensuse.org/debug/update/11.2/rpm/i586/python-xpcom191-debuginfo-1.9.1.6-1.1.1.i586.rpm http://download.opensuse.org/update/11.2/rpm/i586/MozillaFirefox-3.5.6-1.1.1.i586.rpm http://download.opensuse.org/update/11.2/rpm/i586/MozillaFirefox-branding-upstream-3.5.6-1.1.1.i586.rpm http://download.opensuse.org/update/11.2/rpm/i586/MozillaFirefox-translations-common-3.5.6-1.1.1.i586.rpm http://download.opensuse.org/update/11.2/rpm/i586/MozillaFirefox-translations-other-3.5.6-1.1.1.i586.rpm http://download.opensuse.org/update/11.2/rpm/i586/mozilla-xulrunner191-1.9.1.6-1.1.1.i586.rpm http://download.opensuse.org/update/11.2/rpm/i586/mozilla-xulrunner191-devel-1.9.1.6-1.1.1.i586.rpm http://download.opensuse.org/update/11.2/rpm/i586/mozilla-xulrunner191-gnomevfs-1.9.1.6-1.1.1.i586.rpm http://download.opensuse.org/update/11.2/rpm/i586/mozilla-xulrunner191-translations-common-1.9.1.6-1.1.1.i586.rpm http://download.opensuse.org/update/11.2/rpm/i586/mozilla-xulrunner191-translations-other-1.9.1.6-1.1.1.i586.rpm http://download.opensuse.org/update/11.2/rpm/i586/python-xpcom191-1.9.1.6-1.1.1.i586.rpm openSUSE 11.1: http://download.opensuse.org/debug/update/11.1/rpm/i586/MozillaFirefox-debuginfo-3.0.16-0.2.1.i586.rpm http://download.opensuse.org/debug/update/11.1/rpm/i586/MozillaFirefox-debugsource-3.0.16-0.2.1.i586.rpm http://download.opensuse.org/debug/update/11.1/rpm/i586/mozilla-xulrunner190-debuginfo-1.9.0.16-0.1.1.i586.rpm http://download.opensuse.org/debug/update/11.1/rpm/i586/mozilla-xulrunner190-debugsource-1.9.0.16-0.1.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/MozillaFirefox-3.0.16-0.2.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/MozillaFirefox-branding-upstream-3.0.16-0.2.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/MozillaFirefox-translations-3.0.16-0.2.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/mozilla-xulrunner190-1.9.0.16-0.1.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/mozilla-xulrunner190-devel-1.9.0.16-0.1.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/mozilla-xulrunner190-gnomevfs-1.9.0.16-0.1.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/mozilla-xulrunner190-translations-1.9.0.16-0.1.1.i586.rpm http://download.opensuse.org/update/11.1/rpm/i586/python-xpcom190-1.9.0.16-0.1.1.i586.rpm openSUSE 11.0: http://download.opensuse.org/debug/update/11.0/rpm/i586/MozillaFirefox-debuginfo-3.0.16-0.1.i586.rpm http://download.opensuse.org/debug/update/11.0/rpm/i586/MozillaFirefox-debugsource-3.0.16-0.1.i586.rpm http://download.opensuse.org/debug/update/11.0/rpm/i586/mozilla-xulrunner190-debuginfo-1.9.0.16-0.1.i586.rpm http://download.opensuse.org/debug/update/11.0/rpm/i586/mozilla-xulrunner190-debugsource-1.9.0.16-0.1.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/MozillaFirefox-3.0.16-0.1.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/MozillaFirefox-translations-3.0.16-0.1.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/mozilla-xulrunner190-1.9.0.16-0.1.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/mozilla-xulrunner190-devel-1.9.0.16-0.1.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/mozilla-xulrunner190-gnomevfs-1.9.0.16-0.1.i586.rpm http://download.opensuse.org/update/11.0/rpm/i586/mozilla-xulrunner190-translations-1.9.0.16-0.1.i586.rpm Power PC Platform: openSUSE 11.1: http://download.opensuse.org/debug/update/11.1/rpm/ppc/MozillaFirefox-debuginfo-3.0.16-0.2.1.ppc.rpm http://download.opensuse.org/debug/update/11.1/rpm/ppc/MozillaFirefox-debugsource-3.0.16-0.2.1.ppc.rpm http://download.opensuse.org/debug/update/11.1/rpm/ppc/mozilla-xulrunner190-debuginfo-1.9.0.16-0.1.1.ppc.rpm http://download.opensuse.org/debug/update/11.1/rpm/ppc/mozilla-xulrunner190-debugsource-1.9.0.16-0.1.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/MozillaFirefox-3.0.16-0.2.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/MozillaFirefox-branding-upstream-3.0.16-0.2.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/MozillaFirefox-translations-3.0.16-0.2.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/mozilla-xulrunner190-1.9.0.16-0.1.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/mozilla-xulrunner190-devel-1.9.0.16-0.1.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/mozilla-xulrunner190-gnomevfs-1.9.0.16-0.1.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/mozilla-xulrunner190-translations-1.9.0.16-0.1.1.ppc.rpm http://download.opensuse.org/update/11.1/rpm/ppc/python-xpcom190-1.9.0.16-0.1.1.ppc.rpm openSUSE 11.0: http://download.opensuse.org/debug/update/11.0/rpm/ppc/MozillaFirefox-debuginfo-3.0.16-0.1.ppc.rpm http://download.opensuse.org/debug/update/11.0/rpm/ppc/MozillaFirefox-debugsource-3.0.16-0.1.ppc.rpm http://download.opensuse.org/debug/update/11.0/rpm/ppc/mozilla-xulrunner190-debuginfo-1.9.0.16-0.1.ppc.rpm http://download.opensuse.org/debug/update/11.0/rpm/ppc/mozilla-xulrunner190-debugsource-1.9.0.16-0.1.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/MozillaFirefox-3.0.16-0.1.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/MozillaFirefox-translations-3.0.16-0.1.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/mozilla-xulrunner190-1.9.0.16-0.1.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/mozilla-xulrunner190-64bit-1.9.0.16-0.1.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/mozilla-xulrunner190-devel-1.9.0.16-0.1.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/mozilla-xulrunner190-gnomevfs-1.9.0.16-0.1.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/mozilla-xulrunner190-gnomevfs-64bit-1.9.0.16-0.1.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/mozilla-xulrunner190-translations-1.9.0.16-0.1.ppc.rpm http://download.opensuse.org/update/11.0/rpm/ppc/mozilla-xulrunner190-translations-64bit-1.9.0.16-0.1.ppc.rpm x86-64 Platform: openSUSE 11.2: http://download.opensuse.org/debug/update/11.2/rpm/x86_64/MozillaFirefox-debuginfo-3.5.6-1.1.1.x86_64.rpm http://download.opensuse.org/debug/update/11.2/rpm/x86_64/MozillaFirefox-debugsource-3.5.6-1.1.1.x86_64.rpm http://download.opensuse.org/debug/update/11.2/rpm/x86_64/mozilla-xulrunner191-debuginfo-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/debug/update/11.2/rpm/x86_64/mozilla-xulrunner191-debuginfo-32bit-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/debug/update/11.2/rpm/x86_64/mozilla-xulrunner191-debugsource-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/debug/update/11.2/rpm/x86_64/python-xpcom191-debuginfo-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/MozillaFirefox-3.5.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/MozillaFirefox-branding-upstream-3.5.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/MozillaFirefox-translations-common-3.5.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/MozillaFirefox-translations-other-3.5.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/mozilla-xulrunner191-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/mozilla-xulrunner191-32bit-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/mozilla-xulrunner191-devel-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/mozilla-xulrunner191-gnomevfs-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/mozilla-xulrunner191-gnomevfs-32bit-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/mozilla-xulrunner191-translations-common-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/mozilla-xulrunner191-translations-other-1.9.1.6-1.1.1.x86_64.rpm http://download.opensuse.org/update/11.2/rpm/x86_64/python-xpcom191-1.9.1.6-1.1.1.x86_64.rpm openSUSE 11.1: http://download.opensuse.org/debug/update/11.1/rpm/x86_64/MozillaFirefox-debuginfo-3.0.16-0.2.1.x86_64.rpm http://download.opensuse.org/debug/update/11.1/rpm/x86_64/MozillaFirefox-debugsource-3.0.16-0.2.1.x86_64.rpm http://download.opensuse.org/debug/update/11.1/rpm/x86_64/mozilla-xulrunner190-debuginfo-1.9.0.16-0.1.1.x86_64.rpm http://download.opensuse.org/debug/update/11.1/rpm/x86_64/mozilla-xulrunner190-debuginfo-32bit-1.9.0.16-0.1.1.x86_64.rpm http://download.opensuse.org/debug/update/11.1/rpm/x86_64/mozilla-xulrunner190-debugsource-1.9.0.16-0.1.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/MozillaFirefox-3.0.16-0.2.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/MozillaFirefox-branding-upstream-3.0.16-0.2.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/MozillaFirefox-translations-3.0.16-0.2.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/mozilla-xulrunner190-1.9.0.16-0.1.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/mozilla-xulrunner190-32bit-1.9.0.16-0.1.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/mozilla-xulrunner190-devel-1.9.0.16-0.1.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/mozilla-xulrunner190-gnomevfs-1.9.0.16-0.1.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/mozilla-xulrunner190-gnomevfs-32bit-1.9.0.16-0.1.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/mozilla-xulrunner190-translations-1.9.0.16-0.1.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/mozilla-xulrunner190-translations-32bit-1.9.0.16-0.1.1.x86_64.rpm http://download.opensuse.org/update/11.1/rpm/x86_64/python-xpcom190-1.9.0.16-0.1.1.x86_64.rpm openSUSE 11.0: http://download.opensuse.org/debug/update/11.0/rpm/x86_64/mozilla-xulrunner190-debuginfo-1.9.0.16-0.1.x86_64.rpm http://download.opensuse.org/debug/update/11.0/rpm/x86_64/mozilla-xulrunner190-debugsource-1.9.0.16-0.1.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/MozillaFirefox-3.0.16-0.1.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/MozillaFirefox-translations-3.0.16-0.1.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/mozilla-xulrunner190-1.9.0.16-0.1.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/mozilla-xulrunner190-32bit-1.9.0.16-0.1.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/mozilla-xulrunner190-devel-1.9.0.16-0.1.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/mozilla-xulrunner190-gnomevfs-1.9.0.16-0.1.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/mozilla-xulrunner190-gnomevfs-32bit-1.9.0.16-0.1.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/mozilla-xulrunner190-translations-1.9.0.16-0.1.x86_64.rpm http://download.opensuse.org/update/11.0/rpm/x86_64/mozilla-xulrunner190-translations-32bit-1.9.0.16-0.1.x86_64.rpm Sources: openSUSE 11.2: http://download.opensuse.org/update/11.2/rpm/src/MozillaFirefox-3.5.6-1.1.1.src.rpm http://download.opensuse.org/update/11.2/rpm/src/mozilla-xulrunner191-1.9.1.6-1.1.1.src.rpm openSUSE 11.1: http://download.opensuse.org/update/11.1/rpm/src/MozillaFirefox-3.0.16-0.2.1.src.rpm http://download.opensuse.org/update/11.1/rpm/src/mozilla-xulrunner190-1.9.0.16-0.1.1.src.rpm openSUSE 11.0: http://download.opensuse.org/update/11.0/rpm/src/MozillaFirefox-3.0.16-0.1.src.rpm http://download.opensuse.org/update/11.0/rpm/src/mozilla-xulrunner190-1.9.0.16-0.1.src.rpm Our maintenance customers are notified individually. The packages are offered for installation from the maintenance web: SUSE Linux Enterprise Server 10 SP3 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=38f2e3bf80d291ec111cc852e32a75f0 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=2f608be689872233c5fce2ce26bd4514 SLE SDK 10 SP3 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=38f2e3bf80d291ec111cc852e32a75f0 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=2f608be689872233c5fce2ce26bd4514 SUSE Linux Enterprise 10 SP3 DEBUGINFO http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=38f2e3bf80d291ec111cc852e32a75f0 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=2f608be689872233c5fce2ce26bd4514 SUSE Linux Enterprise Desktop 10 SP3 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=38f2e3bf80d291ec111cc852e32a75f0 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=2f608be689872233c5fce2ce26bd4514 SUSE Moblin 2.0 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=eeb33fc58ff5e205aac13507f83c30b2 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=8fa945ac74bac1ab3f1dafec4ebf8552 SLE SDK 10 SP2 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=7d3bda1571135bc5129afbe4d0dde824 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=94479865c30ad91f8d95908c3644ba93 SUSE Linux Enterprise Server 10 SP2 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=7d3bda1571135bc5129afbe4d0dde824 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=94479865c30ad91f8d95908c3644ba93 SUSE Linux Enterprise 10 SP2 DEBUGINFO http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=7d3bda1571135bc5129afbe4d0dde824 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=94479865c30ad91f8d95908c3644ba93 SUSE Linux Enterprise Desktop 10 SP2 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=7d3bda1571135bc5129afbe4d0dde824 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=94479865c30ad91f8d95908c3644ba93 SLES 11 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=f95e0523ee35275bfe5a5ff2cd4fe04f http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=5d919095d6df0dbca3e4ed34b00f367c SLED 11 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=f95e0523ee35275bfe5a5ff2cd4fe04f http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=5d919095d6df0dbca3e4ed34b00f367c SLE 11 http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=f95e0523ee35275bfe5a5ff2cd4fe04f http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=5d919095d6df0dbca3e4ed34b00f367c SLES 11 DEBUGINFO http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=f95e0523ee35275bfe5a5ff2cd4fe04f http://download.novell.com/index.jsp?search=Search&set_restricted=true&keywords=5d919095d6df0dbca3e4ed34b00f367c ORIGINAL ADVISORY: SUSE-SA:2009:063: http://www.novell.com/linux/security/advisories/2009_63_firefox.html OTHER REFERENCES: SA37699: http://secunia.com/advisories/37699/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/advisories/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/advisories/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------