DSA-1753-1

    Dashboard / Vulnerabilities / DSA-1753-1

    DSA-1753-1

    Published: 24 Mar 2009Last Modified: 4 Jul 2022

    Summary: iceweasel - end-of-life announcement for iceweasel in oldstable

    Details: As indicated in the Etch release notes, security support for the Iceweasel version in the oldstable distribution (Etch) needed to be stopped before the end of the regular security maintenance life cycle. You are strongly encouraged to upgrade to stable or switch to a still supported browser. On a side note, please note that the Debian stable/Lenny version of Iceweasel - the unbranded version of the Firefox browser - links dynamically against the Xulrunner library. As such, most of the vulnerabilities found in Firefox need only be fixed in the Xulrunner package and don't require updates to the Iceweasel package any longer.

    References:

    Affected packages

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    DSA-1753-1 | CVE-DB