Updated firefox packages that fix various security issues are now availablefor Red Hat Enterprise Linux 5.This update has been rated as having critical security impact by the RedHat Security Response Team.The nspluginwrapper package has been added to this advisory to satisfy amissing package dependency issue.Mozilla Firefox is an open source Web browser.An integer overflow flaw was found in the way Firefox displayed certain webcontent. A malicious web site could cause Firefox to crash, or executearbitrary code with the permissions of the user running Firefox.(CVE-2008-2785)A flaw was found in the way Firefox handled certain command line URLs. Ifanother application passed Firefox a malformed URL, it could result inFirefox executing local malicious content with chrome privileges.(CVE-2008-2933)All firefox users should upgrade to these updated packages, which containFirefox 3.0.1 that corrects these issues.