2010-12-14

Mozilla製品, Red Hat製品, Canonical Ltd. Ubuntu Linux

ソフト名:Mozilla Firefox 3.5.x/3.6.x, Mozilla SeaMonkey 2.x, Mozilla Thunderbird 3.0.x/3.1.x, Red Hat Desktop 4.x, Red Hat Enterprise Linux 5 (Server)/AS 4/Desktop 5/Desktop 6/ES 4/HPC Node 6/Server 6/Workstation 6/WS 4, RHEL Desktop Workstation 5, RHEL Optional Productivity Applications (v. 5 server), Canonical Ltd. Ubuntu Linux 8.04~10.10
回避策:アップデート, RHSA-2010:0966-1, RHSA-2010:0967-1, RHSA-2010:0968-1, RHSA-2010:0969-2, USN-1019-1, USN-1020-1にて対応
脆弱性:セキュリティ制限の回避, XSS, スプーフィング攻撃, 不正アクセス, メモリ破壊, リモートコード実行, 不正JAVAスクリプトの実行, 解放後使用エラー, 整数オーバーフロー
ソース:
http://mozilla.jp/firefox/
http://www.mozilla.org/security/announce/2010/mfsa2010-74.html
http://www.mozilla.org/security/announce/2010/mfsa2010-75.html
http://www.mozilla.org/security/announce/2010/mfsa2010-76.html
http://www.mozilla.org/security/announce/2010/mfsa2010-77.html
http://www.mozilla.org/security/announce/2010/mfsa2010-78.html
http://www.mozilla.org/security/announce/2010/mfsa2010-79.html
http://www.mozilla.org/security/announce/2010/mfsa2010-80.html
http://www.mozilla.org/security/announce/2010/mfsa2010-81.html
http://www.mozilla.org/security/announce/2010/mfsa2010-82.html
http://www.mozilla.org/security/announce/2010/mfsa2010-83.html
http://www.mozilla.org/security/announce/2010/mfsa2010-84.html
https://rhn.redhat.com/errata/RHSA-2010-0966.html
https://rhn.redhat.com/errata/RHSA-2010-0967.html
https://rhn.redhat.com/errata/RHSA-2010-0968.html
https://rhn.redhat.com/errata/RHSA-2010-0969.html
http://www.ubuntu.com/usn/usn-1019-1
http://www.ubuntu.com/usn/usn-1020-1
http://www.zerodayinitiative.com/advisories/ZDI-10-264/
http://www.zerodayinitiative.com/advisories/ZDI-10-265/
http://archives.neohapsis.com/archives/fulldisclosure/2010-12/0144.html
http://secunia.com/advisories/42517/
http://secunia.com/advisories/42518/
http://secunia.com/advisories/42519/
http://secunia.com/advisories/42533/
http://secunia.com/advisories/42535/
http://secunia.com/advisories/42543/
http://secunia.com/advisories/42556/
http://secunia.com/advisories/42557/
http://secunia.com/advisories/42588/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3766
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3767
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3768
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3769
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3770
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3771
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3772
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3773
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3774
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3775
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3776
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3777
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3778
CVE:CVE-2010-3766, CVE-2010-3767, CVE-2010-3768, CVE-2010-3769, CVE-2010-3770, CVE-2010-3771, CVE-2010-3772, CVE-2010-3773, CVE-2010-3774, CVE-2010-3775, CVE-2010-3776, CVE-2010-3777, CVE-2010-3778
危険性:High Risk

0 件のコメント:

コメントを投稿