Secunia Security Advisory - HP has acknowledged a vulnerability in HP Tru64 UNIX running Firefox/Mozilla Application Suite, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system.
08bc3dabc20ec999c029d40ba267e3ee5781bc7419a662ad21270ac8ac544fc9
TITLE:
HP Tru64 UNIX Firefox/Mozilla Application Suite Vulnerability
SECUNIA ADVISORY ID:
SA20214
VERIFY ADVISORY:
http://secunia.com/advisories/20214/
CRITICAL:
Highly critical
IMPACT:
DoS, System access
WHERE:
>From remote
OPERATING SYSTEM:
HP Tru64 UNIX 4.x
http://secunia.com/product/6/
HP Tru64 UNIX 5.x
http://secunia.com/product/2/
DESCRIPTION:
HP has acknowledged a vulnerability in HP Tru64 UNIX running
Firefox/Mozilla Application Suite, which can be exploited by
malicious people to cause a DoS (Denial of Service) and potentially
compromise a user's system.
For more information:
SA19802
The vulnerability has been reported in the following versions:
* Mozilla 1.7.12 Application Suite for HP Tru64 UNIX
* Firefox 1.5.0.1 for HP Tru64 UNIX
* Firefox 1.0.7 for HP Tru64 UNIX
SOLUTION:
Update to the fixed versions.
Mozilla 1.7.13 Application Suite for HP Tru64 UNIX:
http://h30097.www3.hp.com/internet/download.htm#mozilla
Name: mozilla1713.tar.gz
MD5 Checksum: a3a2694eb767b1ef2623da1783183357
Firefox 1.5.0.3 for HP Tru64 UNIX:
http://h30097.www3.hp.com/internet/download.htm#firefox1503
Name: firefox1503.tar.gz
MD5 Checksum: caedd963353eb9096f7b3cfc2d9177a1
Firefox 1.0.8 for HP Tru64 UNIX:
http://h30097.www3.hp.com/internet/download.htm#firefox
Name: firefox108.tar.gz
MD5 Checksum: a319705dc0f42d6fe66a25f57f8f9105
ORIGINAL ADVISORY:
HPSBTU02118 SSRT061145:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00672120
OTHER REFERENCES:
SA19802:
http://secunia.com/advisories/19802/
----------------------------------------------------------------------
About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.
Subscribe:
http://secunia.com/secunia_security_advisories/
Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/
Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.
----------------------------------------------------------------------