Oval Definition:oval:org.mitre.oval:def:22791
Revision Date:2014-05-26Version:32
Title:ELSA-2011:1342: thunderbird security update (Critical)
Description:Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 do not properly handle HTTP responses that contain multiple Location, Content-Length, or Content-Disposition headers, which makes it easier for remote attackers to conduct HTTP response splitting attacks via crafted header values.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2011-2372
CVE-2011-2995
CVE-2011-2998
CVE-2011-2999
CVE-2011-3000
ELSA-2011:1342-01
Platform(s):Oracle Linux 6
Product(s):thunderbird
Definition Synopsis
  • thunderbird is earlier than 0:3.1.15-1.el6_1
  • AND Oracle Linux 6.x
  • BACK