Oval Definition:oval:org.mitre.oval:def:21884
Revision Date:2014-02-24Version:87
Title:RHSA-2011:1164: firefox security update (Critical)
Description:Mozilla Firefox before 3.6.20, SeaMonkey 2.x, Thunderbird 3.x before 3.1.12, and possibly other products does not properly handle the dropping of a tab element, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges by establishing a content area and registering for drop events.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2011:1164
CVE-2011-0084
CVE-2011-2378
CVE-2011-2981
CVE-2011-2982
CVE-2011-2983
CVE-2011-2984
RHSA-2011:1164-01
Platform(s):CentOS Linux 5
CentOS Linux 6
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 6
Product(s):firefox
xulrunner
Definition Synopsis
  • Operation system section
  • Redhat 5 or Centos 5 release
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • OR The operating system installed on the system is CentOS Linux 5.x
  • AND Packages section
  • xulrunner-devel is earlier than 0:1.9.2.20-2.el5
  • OR xulrunner is earlier than 0:1.9.2.20-2.el5
  • OR firefox is earlier than 0:3.6.20-2.el5
  • Operation system section
  • The operating system installed on the system is Red Hat Enterprise Linux 6
  • AND Packages section
  • xulrunner-devel is earlier than 0:1.9.2.20-2.el6_1
  • OR xulrunner is earlier than 0:1.9.2.20-2.el6_1
  • OR firefox is earlier than 0:3.6.20-2.el6_1
  • BACK