Author Topic: Firefox 19 stuff  (Read 902 times)

Offline menotu

  • PCLinuxOS Tester
  • Super Villain
  • *******
  • Posts: 15322
  • ┌∩┐(◕_◕)┌∩┐
Re: Firefox 19 stuff
« Reply #15 on: March 08, 2013, 04:56:03 AM »
Mozilla have now released 19.02

I guess this is due the hack done during Pwn2Own

Fixed - 19.0.2: Security-driven release, see details in the associated security advisory

Impact: Critical
Announced: March 7, 2013
Reporter: VUPEN Security
Products: Firefox, Thunderbird, SeaMonkey

Fixed in:

Firefox 19.0.2
Firefox ESR 17.0.4
Thunderbird 17.0.4
Thunderbird ESR 17.0.4
SeaMonkey 2.16.1

Description

VUPEN Security, via TippingPoint's Zero Day Initiative, reported a use-after-free within the HTML editor when content script is run by the document.execCommand() function while internal editor operations are occurring. This could allow for arbitrary code execution.

https://www.mozilla.org/security/announce/2013/mfsa2013-29.html

============================================
All Security Advisories for Firefox between  4.0.1 to 19.0.2

https://www.mozilla.org/security/known-vulnerabilities/firefox.html
PCLinuxOS 32bit KDE 4.10.1; kernel-3.4.11-pclos1.bfs & 64bit 3.2.18bfs; NVidia GeForce 8400GS 1GB 310.19 driver

Sony Vaio SVE1513A4ESI Laptop, Intel Core i5, 2.6GHz, 6GB RAM, 750GB, 15.6" Intel HD Graphics 4000