MGASA-2014-0260
Dashboard / Vulnerabilities / MGASA-2014-0260
MGASA-2014-0260
Summary: Updated firefox & thunderbird packages fix multiple security vulnerabilities
Details: Updated firefox and thunderbird packages fix security vulnerabilities: Several flaws were found in the processing of malformed web content. A web page containing malicious content could cause Firefox or Thunderbird to crash or, potentially, execute arbitrary code with the privileges of the user running it (CVE-2014-1533, CVE-2014-1538, CVE-2014-1541).
References: https://advisories.mageia.org/MGASA-2014-0260.html, http://www.mozilla.org/security/announce/2014/mfsa2014-48.html, http://www.mozilla.org/security/announce/2014/mfsa2014-49.html, http://www.mozilla.org/security/announce/2014/mfsa2014-52.html, http://www.mozilla.org/security/known-vulnerabilities/firefoxESR.html, http://www.mozilla.org/security/known-vulnerabilities/thunderbird.html, https://rhn.redhat.com/errata/RHSA-2014-0741.html, https://rhn.redhat.com/errata/RHSA-2014-0742.html, https://bugs.mageia.org/show_bug.cgi?id=13515
Affected packages
Package
Name: rootcerts
Purl: pkg:rpm/mageia/rootcerts?arch=source&distro=mageia-3
Affected ranges
Type: ECOSYSTEM
Events:
