---------------------------------------------------------------------- A new version (0.9.0.0 - Release Candidate 1) of the free Secunia PSI has been released. The new version includes many new and advanced features, which makes it even easier to stay patched. Download and test it today: https://psi.secunia.com/ Read more about this new version: https://psi.secunia.com/?page=changelog ---------------------------------------------------------------------- TITLE: SUSE update for MozillaFirefox and seamonkey SECUNIA ADVISORY ID: SA28958 VERIFY ADVISORY: http://secunia.com/advisories/28958/ CRITICAL: Highly critical IMPACT: Security Bypass, Cross Site Scripting, Spoofing, Exposure of sensitive information, DoS, System access WHERE: >From remote OPERATING SYSTEM: SUSE Linux 10.1 http://secunia.com/product/10796/ openSUSE 10.2 http://secunia.com/product/13375/ openSUSE 10.3 http://secunia.com/product/16124/ SUSE Linux Enterprise Server 9 http://secunia.com/product/4118/ SUSE Linux Enterprise Server 10 http://secunia.com/product/12192/ SOFTWARE: Novell Open Enterprise Server http://secunia.com/product/4664/ DESCRIPTION: SUSE has issued an update for MozillaFirefox and seamonkey. This fixes some weaknesses and vulnerabilities, which can be exploited by malicious people to disclose sensitive information, bypass certain security restrictions, conduct spoofing attacks, or to compromise a user's system. For more information: SA28622 SA28758 SOLUTION: Apply updated packages. x86 Platform: openSUSE 10.3: http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/seamonkey-1.1.8-0.1.i586.rpm a8a852b6753d3a9a7449bb4a3f2f9765 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/seamonkey-dom-inspector-1.1.8-0.1.i586.rpm 89df63709a92eca6b81a94fb4860bfab http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/seamonkey-irc-1.1.8-0.1.i586.rpm 0364ddd40bd602863b108a4e9a95d4c6 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/seamonkey-mail-1.1.8-0.1.i586.rpm 6c41ddb95c841f79e42d26f7d1ed1a05 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/seamonkey-spellchecker-1.1.8-0.1.i586.rpm 826ca71e07414734e164a121562f8b42 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/seamonkey-venkman-1.1.8-0.1.i586.rpm 556ca543d0c616b819205b48d18a8fd7 openSUSE 10.2: ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/MozillaFirefox-2.0.0.12-0.1.i586.rpm 7e9730173c71a84bf1fed6d3e421a896 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/MozillaFirefox-translations-2.0.0.12-0.1.i586.rpm a0afdbfa5eebeec21134358f7b546a8c ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/seamonkey-1.1.8-0.1.i586.rpm ddb1e906304f891d58f6389054a6212d ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/seamonkey-dom-inspector-1.1.8-0.1.i586.rpm 5fc48ded7b9223878384fdb8b6e0022d ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/seamonkey-irc-1.1.8-0.1.i586.rpm dc4919a5df479b57990a25be41daac8c ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/seamonkey-mail-1.1.8-0.1.i586.rpm b0f0a1aac9fb239c9f5cf49c4154b980 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/seamonkey-spellchecker-1.1.8-0.1.i586.rpm aef29179696e18fd9b0dd92cec9399c7 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/seamonkey-venkman-1.1.8-0.1.i586.rpm 550a4b7a989a26333bc4db233584c71a SUSE LINUX 10.1: ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/MozillaFirefox-2.0.0.12-0.2.i586.rpm a36c6fddaf43f19fb6db426eb4252f82 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/MozillaFirefox-translations-2.0.0.12-0.2.i586.rpm 2421e25c0f104e55171eae7c9d8e6167 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/seamonkey-1.0.9-1.10.i586.rpm 29c195e77854053efdce833353ed0b76 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/seamonkey-calendar-1.0.9-1.10.i586.rpm 5926f72e2adf7677bdffd5e536128dd9 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/seamonkey-dom-inspector-1.0.9-1.10.i586.rpm ebf9c7d4c62b65c41b169506e8b40196 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/seamonkey-irc-1.0.9-1.10.i586.rpm d883c2df0efde3473f02755bac0425ec ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/seamonkey-mail-1.0.9-1.10.i586.rpm b02f49069b91569f5694a8688a25703b ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/seamonkey-spellchecker-1.0.9-1.10.i586.rpm 7de69401d08169f3a308fdbb14f0a090 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/seamonkey-venkman-1.0.9-1.10.i586.rpm b1368668ad37aea4b71fe5af930c2454 openSUSE 10.3: http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/MozillaFirefox-2.0.0.12-0.1.i586.rpm e0132d73ab722bbca579a79f253ffe48 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/i586/MozillaFirefox-translations-2.0.0.12-0.1.i586.rpm 45ae7d71d9168715a631cab85ab36eda Power PC Platform: openSUSE 10.3: http://download.opensuse.org/pub/opensuse/update/10.3/rpm/ppc/MozillaFirefox-2.0.0.12-0.1.ppc.rpm abae9d38f2cb314696ccceb09b0a9b90 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/ppc/MozillaFirefox-translations-2.0.0.12-0.1.ppc.rpm ba61a431ae34aae1a804f82c781f4ffe http://download.opensuse.org/pub/opensuse/update/10.3/rpm/ppc/seamonkey-1.1.8-0.1.ppc.rpm 2a22a1a221bef5715d665530ad1bd233 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/ppc/seamonkey-dom-inspector-1.1.8-0.1.ppc.rpm c1f6c0ff2487f2e6d0e92a7d7f670d40 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/ppc/seamonkey-irc-1.1.8-0.1.ppc.rpm de9df3f24ed5852b098e5bb9eed5ff26 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/ppc/seamonkey-mail-1.1.8-0.1.ppc.rpm 3a0a89d873a429b127100ec7f06e7f0f http://download.opensuse.org/pub/opensuse/update/10.3/rpm/ppc/seamonkey-spellchecker-1.1.8-0.1.ppc.rpm d4520354bd3755487f8ba4e7770e6e69 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/ppc/seamonkey-venkman-1.1.8-0.1.ppc.rpm bb8619aea4a3cab26885333dcb4f5edc openSUSE 10.2: ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/MozillaFirefox-2.0.0.12-0.1.ppc.rpm 508a4703c1b69f2280f1c0ae7984ee30 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/MozillaFirefox-translations-2.0.0.12-0.1.ppc.rpm b89287432ea5d74460cc2a83484dbe54 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/seamonkey-1.1.8-0.1.ppc.rpm 91dab78e8bb89cf93fc722d05e041176 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/seamonkey-dom-inspector-1.1.8-0.1.ppc.rpm 4fc802f1ab92b63902cbf12a133016df ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/seamonkey-irc-1.1.8-0.1.ppc.rpm 304ed7aef3feecf40b4c9c0c5106580d ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/seamonkey-mail-1.1.8-0.1.ppc.rpm 0598850fbcce57d67b59d697567cace2 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/seamonkey-spellchecker-1.1.8-0.1.ppc.rpm f6af75ff58c754f9834a4a73e45b6e7c ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/seamonkey-venkman-1.1.8-0.1.ppc.rpm 9856d718f6a4a952f3c606b5d1111c13 SUSE LINUX 10.1: ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/MozillaFirefox-2.0.0.12-0.2.ppc.rpm 5a8e7d0860018f1b8caf8b6f46093df6 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/MozillaFirefox-translations-2.0.0.12-0.2.ppc.rpm 0cbe495221155d2ef200215ed8dc9b94 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/seamonkey-1.0.9-1.10.ppc.rpm 691403e435c3014addffb3cc1cc1f555 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/seamonkey-calendar-1.0.9-1.10.ppc.rpm 0f9f800fc6929fa443f698905cec5a76 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/seamonkey-dom-inspector-1.0.9-1.10.ppc.rpm a8608e710c60d42ccc7b032807d741bb ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/seamonkey-irc-1.0.9-1.10.ppc.rpm bbe83ebdcb12656f882347ef0b54e2a9 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/seamonkey-mail-1.0.9-1.10.ppc.rpm 9dbde43fcb3faab1462116e45410ee64 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/seamonkey-spellchecker-1.0.9-1.10.ppc.rpm 1126c0eaa250a4f3d35edd0f009b350f ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/seamonkey-venkman-1.0.9-1.10.ppc.rpm 59ca36ad2c6a3f3415c0bcc2665686eb x86-64 Platform: openSUSE 10.3: http://download.opensuse.org/pub/opensuse/update/10.3/rpm/x86_64/MozillaFirefox-2.0.0.12-0.1.x86_64.rpm d5207589aaa5f59008b92e7b861bedb2 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/x86_64/MozillaFirefox-translations-2.0.0.12-0.1.x86_64.rpm a8023cfa267fbef2b9fadf8091a45d56 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/x86_64/seamonkey-1.1.8-0.1.x86_64.rpm f0e3bae6d0a9c2db81e9e5f4f14cff01 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/x86_64/seamonkey-dom-inspector-1.1.8-0.1.x86_64.rpm 3c05f2619c650459481458e4af288e9b http://download.opensuse.org/pub/opensuse/update/10.3/rpm/x86_64/seamonkey-irc-1.1.8-0.1.x86_64.rpm 7c37e3bf4e6e4e483200efcbf377cc31 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/x86_64/seamonkey-mail-1.1.8-0.1.x86_64.rpm e4546cc3a2d553c9451c0126fba56862 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/x86_64/seamonkey-spellchecker-1.1.8-0.1.x86_64.rpm 5a3547a8d6e13e3feaf03e8c0aeea72e http://download.opensuse.org/pub/opensuse/update/10.3/rpm/x86_64/seamonkey-venkman-1.1.8-0.1.x86_64.rpm a71168d175b21bdf72cf3689c783f9cc openSUSE 10.2: ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/MozillaFirefox-2.0.0.12-0.1.x86_64.rpm b4f22b31de60049b59cbf5250a6a528e ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/MozillaFirefox-translations-2.0.0.12-0.1.x86_64.rpm 638cd35fedad0d32dd01c761115093f6 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/seamonkey-1.1.8-0.1.x86_64.rpm d63901ff1b1dc3b3c9ca4be19630d5f5 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/seamonkey-dom-inspector-1.1.8-0.1.x86_64.rpm f96ce993ba6296a9e339b7b5edee1739 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/seamonkey-irc-1.1.8-0.1.x86_64.rpm 946ff1773cbb270e5041bb202cc3bff8 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/seamonkey-mail-1.1.8-0.1.x86_64.rpm c75eaef024493b08c50e0f98708686dc ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/seamonkey-spellchecker-1.1.8-0.1.x86_64.rpm fc2da248d7af5695889218cdeb7b121f ftp://ftp.suse.com/pub/suse/update/10.2/rpm/x86_64/seamonkey-venkman-1.1.8-0.1.x86_64.rpm b25ddffe225fd802b451eb873ea3ea83 SUSE LINUX 10.1: ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/seamonkey-1.0.9-1.10.x86_64.rpm b6c02874d473977cab1cc00b70565cb1 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/seamonkey-calendar-1.0.9-1.10.x86_64.rpm 83f6aceefef48bcd1b4a045d6555308b ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/seamonkey-dom-inspector-1.0.9-1.10.x86_64.rpm 39f4652b9970e2dbbca84ce66258dcbb ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/seamonkey-irc-1.0.9-1.10.x86_64.rpm fb603db004367109928a2547014b5a63 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/seamonkey-mail-1.0.9-1.10.x86_64.rpm 74af4aaf3b63d82b03994198a84d67fd ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/seamonkey-spellchecker-1.0.9-1.10.x86_64.rpm 4749b27bfdeb8a9f32b2c1c12542a1ba ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/seamonkey-venkman-1.0.9-1.10.x86_64.rpm 75edd9a8cadb8f0479cd876224012158 Sources: openSUSE 10.3: http://download.opensuse.org/pub/opensuse/update/10.3/rpm/src/MozillaFirefox-2.0.0.12-0.1.src.rpm 39fe144c735b8e7d74c331958d89ffe2 http://download.opensuse.org/pub/opensuse/update/10.3/rpm/src/seamonkey-1.1.8-0.1.src.rpm 33c21b39a7a57aa16b8fe8de576c990f openSUSE 10.2: ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/MozillaFirefox-2.0.0.12-0.1.src.rpm e88392a655c700628dc8ad2b64d0e2c2 ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/seamonkey-1.1.8-0.1.src.rpm 21f2e768b74d62a44c0f1ae1688dc23d SUSE LINUX 10.1: ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/MozillaFirefox-2.0.0.12-0.2.src.rpm 9485fce4fefea332b587efb16473149c ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/seamonkey-1.0.9-1.10.src.rpm a0931f73bcad08e7794e883d517a56b8 Novell Linux Desktop 9 http://support.novell.com/techcenter/psdb/25e2ffcf469ccafcac7d9108475aa0a8.html SUSE Linux Enterprise Server 10 SP1 http://support.novell.com/techcenter/psdb/7731713870954ee13e98b603bd413b0b.html SUSE Linux Enterprise Desktop 10 SP1 http://support.novell.com/techcenter/psdb/7731713870954ee13e98b603bd413b0b.html ORIGINAL ADVISORY: http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00006.html OTHER REFERENCES: SA28622: http://secunia.com/advisories/28622/ SA28758: http://secunia.com/advisories/28758/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------