Oval Definition:oval:org.mitre.oval:def:21486
Revision Date:2014-02-24Version:256
Title:RHSA-2010:0153: thunderbird security update (Moderate)
Description:Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 allow remote attackers to perform cross-origin keystroke capture, and possibly conduct cross-site scripting (XSS) attacks, by using the addEventListener and setTimeout functions in conjunction with a wrapped object. NOTE: this vulnerability exists because of an incomplete fix for CVE-2007-3736.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2010:0153
CVE-2009-0689
CVE-2009-1571
CVE-2009-2462
CVE-2009-2463
CVE-2009-2466
CVE-2009-2470
CVE-2009-3072
CVE-2009-3075
CVE-2009-3076
CVE-2009-3077
CVE-2009-3274
CVE-2009-3376
CVE-2009-3380
CVE-2009-3384
CVE-2009-3979
CVE-2010-0159
CVE-2010-0163
CVE-2010-0169
CVE-2010-0171
RHSA-2010:0153-02
Platform(s):CentOS Linux 5
Red Hat Enterprise Linux 5
Product(s):thunderbird
Definition Synopsis
  • Redhat 5 or Centos 5 release
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • OR The operating system installed on the system is CentOS Linux 5.x
  • AND thunderbird is earlier than 0:2.0.0.24-2.el5_4
  • BACK