Oval Definition:oval:org.mitre.oval:def:20689
Revision Date:2014-02-24Version:48
Title:RHSA-2012:1407: firefox security update (Critical)
Description:Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 allow remote attackers to bypass the Same Origin Policy and read the Location object via a prototype property-injection attack that defeats certain protection mechanisms for this object.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2012:1407
CVE-2012-4194
CVE-2012-4195
CVE-2012-4196
RHSA-2012:1407-01
Platform(s):CentOS Linux 5
CentOS Linux 6
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 6
Product(s):firefox
xulrunner
Definition Synopsis
  • Redhat 5 and Centos 5 section
  • Redhat 5 or Centos 5 release
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • OR The operating system installed on the system is CentOS Linux 5.x
  • AND Packages section
  • xulrunner-devel is earlier than 0:10.0.10-1.el5_8
  • OR xulrunner is earlier than 0:10.0.10-1.el5_8
  • OR Centos 5 section
  • The operating system installed on the system is CentOS Linux 5.x
  • AND firefox is earlier than 0:10.0.10-1.el5.centos
  • OR Redhat 5 section
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • AND firefox is earlier than 0:10.0.10-1.el5_8
  • OR Redhat 6 section
  • The operating system installed on the system is Red Hat Enterprise Linux 6
  • AND Packages section
  • xulrunner-devel is earlier than 0:10.0.10-1.el6_3
  • OR xulrunner is earlier than 0:10.0.10-1.el6_3
  • OR firefox is earlier than 0:10.0.10-1.el6_3
  • OR Centos 6 section
  • The operating system installed on the system is CentOS Linux 6.x
  • AND Packages section
  • xulrunner-devel is earlier than 0:10.0.10-1.el6.centos
  • OR xulrunner is earlier than 0:10.0.10-1.el6.centos
  • OR firefox is earlier than 0:10.0.10-1.el6.centos
  • BACK