Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.57280
Category:Mandrake Local Security Checks
Title:Mandrake Security Advisory MDKSA-2006:143 (mozilla-firefox)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to mozilla-firefox
announced via advisory MDKSA-2006:143.

A number of security vulnerabilities have been discovered and corrected
in the latest Mozilla Firefox program.

For details, please visit the referenced security advisories.

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

https://secure1.securityspace.com/smysecure/catid.html?in=MDKSA-2006:143

Risk factor : Critical

CVSS Score:
9.3

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2006-2613
Bugtraq: 20060521 Firefox 1.5.0.3 Flaw - Page can obtain path to Mozilla installation or profile by examining JavaScript exceptions (Google Search)
http://www.securityfocus.com/archive/1/434696/100/0/threaded
http://www.mandriva.com/security/advisories?name=MDKSA-2006:143
http://www.mandriva.com/security/advisories?name=MDKSA-2006:145
https://bugzilla.mozilla.org/attachment.cgi?id=164547
http://secunia.com/advisories/20244
http://secunia.com/advisories/20255
http://secunia.com/advisories/20256
http://secunia.com/advisories/21532
http://securityreason.com/securityalert/960
XForce ISS Database: mozilla-javascript-path-disclosure(26667)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26667
Common Vulnerability Exposure (CVE) ID: CVE-2006-2894
BugTraq ID: 18308
http://www.securityfocus.com/bid/18308
Bugtraq: 20070211 Firefox focus stealing vulnerability (possibly other browsers) (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2007-02/0166.html
Bugtraq: 20070212 Re: [Full-disclosure] Firefox focus stealing vulnerability (possibly other browsers) (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2007-02/0187.html
Bugtraq: 20071026 rPSA-2007-0225-1 firefox (Google Search)
http://www.securityfocus.com/archive/1/482876/100/200/threaded
Bugtraq: 20071029 FLEA-2007-0062-1 firefox (Google Search)
http://www.securityfocus.com/archive/1/482925/100/0/threaded
Bugtraq: 20071029 rPSA-2007-0225-2 firefox thunderbird (Google Search)
http://www.securityfocus.com/archive/1/482932/100/200/threaded
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00355.html
http://lists.grok.org.uk/pipermail/full-disclosure/2006-June/046610.html
http://lists.virus.org/full-disclosure-0702/msg00225.html
HPdes Security Advisory: HPSBUX02153
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742
HPdes Security Advisory: SSRT061181
http://www.mandriva.com/en/security/advisories?name=MDKSA-2007:202
http://lcamtuf.coredump.cx/focusbug/
http://www.gnucitizen.org/blog/browser-focus-rip
http://www.thanhngan.org/fflinuxversion.html
https://bugzilla.mozilla.org/show_bug.cgi?id=290478
https://bugzilla.mozilla.org/show_bug.cgi?id=56236
http://securitytracker.com/id?1018837
http://secunia.com/advisories/20442
http://secunia.com/advisories/20467
http://secunia.com/advisories/20470
http://secunia.com/advisories/20472
http://secunia.com/advisories/27298
http://secunia.com/advisories/27335
http://secunia.com/advisories/27383
http://secunia.com/advisories/27387
http://secunia.com/advisories/27403
http://secunia.com/advisories/27414
http://securityreason.com/securityalert/1059
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201516-1
SuSE Security Announcement: SUSE-SA:2007:057 (Google Search)
http://www.novell.com/linux/security/advisories/2007_57_mozilla.html
https://usn.ubuntu.com/535-1/
http://www.ubuntu.com/usn/usn-536-1
http://www.vupen.com/english/advisories/2006/2160
http://www.vupen.com/english/advisories/2006/2162
http://www.vupen.com/english/advisories/2006/2163
http://www.vupen.com/english/advisories/2006/2164
http://www.vupen.com/english/advisories/2007/3544
http://www.vupen.com/english/advisories/2008/0083
Common Vulnerability Exposure (CVE) ID: CVE-2006-2775
BugTraq ID: 18228
http://www.securityfocus.com/bid/18228
Bugtraq: 20060602 rPSA-2006-0091-1 firefox thunderbird (Google Search)
http://www.securityfocus.com/archive/1/435795/100/0/threaded
Cert/CC Advisory: TA06-153A
http://www.us-cert.gov/cas/techalerts/TA06-153A.html
CERT/CC vulnerability note: VU#243153
http://www.kb.cert.org/vuls/id/243153
Debian Security Information: DSA-1118 (Google Search)
http://www.debian.org/security/2006/dsa-1118
Debian Security Information: DSA-1120 (Google Search)
http://www.debian.org/security/2006/dsa-1120
Debian Security Information: DSA-1134 (Google Search)
http://www.debian.org/security/2006/dsa-1134
http://www.gentoo.org/security/en/glsa/glsa-200606-12.xml
http://www.gentoo.org/security/en/glsa/glsa-200606-21.xml
http://www.securityfocus.com/archive/1/446658/100/200/threaded
HPdes Security Advisory: HPSBUX02156
http://www.securityfocus.com/archive/1/446657/100/200/threaded
HPdes Security Advisory: SSRT061236
http://www.mandriva.com/security/advisories?name=MDKSA-2006:146
http://securitytracker.com/id?1016202
http://securitytracker.com/id?1016214
http://secunia.com/advisories/20376
http://secunia.com/advisories/20382
http://secunia.com/advisories/20561
http://secunia.com/advisories/20709
http://secunia.com/advisories/21176
http://secunia.com/advisories/21178
http://secunia.com/advisories/21183
http://secunia.com/advisories/21188
http://secunia.com/advisories/21210
http://secunia.com/advisories/21324
http://secunia.com/advisories/21607
http://secunia.com/advisories/22065
http://secunia.com/advisories/22066
SuSE Security Announcement: SUSE-SA:2006:035 (Google Search)
http://www.novell.com/linux/security/advisories/2006_35_mozilla.html
https://usn.ubuntu.com/296-1/
https://usn.ubuntu.com/296-2/
https://usn.ubuntu.com/297-1/
https://usn.ubuntu.com/297-3/
https://usn.ubuntu.com/323-1/
http://www.vupen.com/english/advisories/2006/2106
http://www.vupen.com/english/advisories/2006/3748
http://www.vupen.com/english/advisories/2006/3749
XForce ISS Database: mozilla-xul-code-execution(26846)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26846
Common Vulnerability Exposure (CVE) ID: CVE-2006-2776
CERT/CC vulnerability note: VU#575969
http://www.kb.cert.org/vuls/id/575969
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9849
http://www.redhat.com/support/errata/RHSA-2006-0578.html
http://www.redhat.com/support/errata/RHSA-2006-0594.html
RedHat Security Advisories: RHSA-2006:0609
http://rhn.redhat.com/errata/RHSA-2006-0609.html
http://www.redhat.com/support/errata/RHSA-2006-0610.html
http://www.redhat.com/support/errata/RHSA-2006-0611.html
http://secunia.com/advisories/21134
http://secunia.com/advisories/21269
http://secunia.com/advisories/21270
http://secunia.com/advisories/21336
http://secunia.com/advisories/21631
http://secunia.com/advisories/24108
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102800-1
http://www.vupen.com/english/advisories/2007/0573
XForce ISS Database: mozilla-contentdefined-code-execution(26848)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26848
Common Vulnerability Exposure (CVE) ID: CVE-2006-2777
CERT/CC vulnerability note: VU#237257
http://www.kb.cert.org/vuls/id/237257
http://secunia.com/advisories/20394
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102763-1
http://www.vupen.com/english/advisories/2007/0058
XForce ISS Database: mozilla-nsiselectionprivate-code-execution(26853)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26853
Common Vulnerability Exposure (CVE) ID: CVE-2006-2778
CERT/CC vulnerability note: VU#421529
http://www.kb.cert.org/vuls/id/421529
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9703
XForce ISS Database: mozilla-crypto-signtext-bo(26849)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26849
Common Vulnerability Exposure (CVE) ID: CVE-2006-2779
CERT/CC vulnerability note: VU#466673
http://www.kb.cert.org/vuls/id/466673
Debian Security Information: DSA-1159 (Google Search)
http://www.debian.org/security/2006/dsa-1159
Debian Security Information: DSA-1160 (Google Search)
http://www.debian.org/security/2006/dsa-1160
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9762
http://secunia.com/advisories/21634
http://secunia.com/advisories/21654
http://secunia.com/advisories/27216
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102943-1
http://sunsolve.sun.com/search/document.do?assetkey=1-66-200387-1
http://www.vupen.com/english/advisories/2007/3488
XForce ISS Database: mozilla-browserengine-memory-corruption(26843)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26843
Common Vulnerability Exposure (CVE) ID: CVE-2006-2780
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11305
Common Vulnerability Exposure (CVE) ID: CVE-2006-2782
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10429
XForce ISS Database: mozilla-firefox-textbox-file-access(26851)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26851
Common Vulnerability Exposure (CVE) ID: CVE-2006-2783
http://lists.apple.com/archives/security-announce/2008//Jul/msg00001.html
http://lists.apple.com/archives/security-announce/2009/jun/msg00002.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10772
http://secunia.com/advisories/31074
http://secunia.com/advisories/35379
http://www.vupen.com/english/advisories/2008/2094/references
http://www.vupen.com/english/advisories/2009/1522
XForce ISS Database: mozilla-bom-utf8-xss(26852)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26852
Common Vulnerability Exposure (CVE) ID: CVE-2006-2784
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9768
XForce ISS Database: mozilla-pluginspage-code-execution(26847)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26847
Common Vulnerability Exposure (CVE) ID: CVE-2006-2785
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10545
XForce ISS Database: mozilla-viewimage-xss(26845)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26845
Common Vulnerability Exposure (CVE) ID: CVE-2006-2786
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9966
XForce ISS Database: mozilla-http-response-smuggling(26844)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26844
Common Vulnerability Exposure (CVE) ID: CVE-2006-2787
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9491
XForce ISS Database: mozilla-valueof-sandbox-bypass(26842)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26842
Common Vulnerability Exposure (CVE) ID: CVE-2006-2788
21269
21270
21336
21532
21631
22247
http://secunia.com/advisories/22247
22299
http://secunia.com/advisories/22299
22342
http://secunia.com/advisories/22342
22849
http://secunia.com/advisories/22849
DSA-1191
http://www.us.debian.org/security/2006/dsa-1191
DSA-1192
http://www.debian.org/security/2006/dsa-1192
DSA-1210
http://www.debian.org/security/2006/dsa-1210
MDKSA-2006:143
MDKSA-2006:145
RHSA-2006:0578
RHSA-2006:0594
RHSA-2006:0609
RHSA-2006:0610
RHSA-2006:0611
USN-296-1
USN-361-1
http://www.ubuntu.com/usn/usn-361-1
https://bugzilla.mozilla.org/show_bug.cgi?id=321598
oval:org.mitre.oval:def:11065
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11065
Common Vulnerability Exposure (CVE) ID: CVE-2006-3677
BugTraq ID: 19181
http://www.securityfocus.com/bid/19181
BugTraq ID: 19192
http://www.securityfocus.com/bid/19192
Bugtraq: 20060726 ZDI-06-025: Mozilla Firefox Javascript navigator Object Vulnerability (Google Search)
http://www.securityfocus.com/archive/1/441332/100/0/threaded
Bugtraq: 20060727 rPSA-2006-0137-1 firefox (Google Search)
http://www.securityfocus.com/archive/1/441333/100/0/threaded
Cert/CC Advisory: TA06-208A
http://www.us-cert.gov/cas/techalerts/TA06-208A.html
CERT/CC vulnerability note: VU#670060
http://www.kb.cert.org/vuls/id/670060
http://security.gentoo.org/glsa/glsa-200608-02.xml
http://www.gentoo.org/security/en/glsa/glsa-200608-03.xml
http://www.zerodayinitiative.com/advisories/ZDI-06-025.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10745
http://www.redhat.com/support/errata/RHSA-2006-0608.html
http://securitytracker.com/id?1016586
http://securitytracker.com/id?1016587
http://secunia.com/advisories/19873
http://secunia.com/advisories/21216
http://secunia.com/advisories/21229
http://secunia.com/advisories/21243
http://secunia.com/advisories/21246
http://secunia.com/advisories/21262
http://secunia.com/advisories/21343
http://secunia.com/advisories/21361
http://secunia.com/advisories/21529
http://secunia.com/advisories/22210
SGI Security Advisory: 20060703-01-P
ftp://patches.sgi.com/support/free/security/advisories/20060703-01-U.asc
SuSE Security Announcement: SUSE-SA:2006:048 (Google Search)
http://www.novell.com/linux/security/advisories/2006_48_seamonkey.html
https://usn.ubuntu.com/327-1/
http://www.ubuntu.com/usn/usn-354-1
http://www.vupen.com/english/advisories/2006/2998
XForce ISS Database: iphone-mobilesafari-dos(39998)
https://exchange.xforce.ibmcloud.com/vulnerabilities/39998
XForce ISS Database: mozilla-javascript-navigator-code-excecution(27981)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27981
Common Vulnerability Exposure (CVE) ID: CVE-2006-3803
1016586
1016587
1016588
http://securitytracker.com/id?1016588
19181
19873
20060703-01-P
20060727 rPSA-2006-0137-1 firefox
21216
21228
http://secunia.com/advisories/21228
21229
21243
21246
21250
http://secunia.com/advisories/21250
21262
21275
http://secunia.com/advisories/21275
21343
21358
http://secunia.com/advisories/21358
21361
21529
21607
22055
http://secunia.com/advisories/22055
22065
22066
22210
ADV-2006-2998
ADV-2006-3748
ADV-2006-3749
ADV-2008-0083
GLSA-200608-02
GLSA-200608-03
GLSA-200608-04
http://security.gentoo.org/glsa/glsa-200608-04.xml
HPSBUX02153
HPSBUX02156
MDKSA-2006:146
RHSA-2006:0608
SSRT061181
SSRT061236
SUSE-SA:2006:048
TA06-208A
USN-327-1
USN-329-1
https://usn.ubuntu.com/329-1/
USN-350-1
http://www.ubuntu.com/usn/usn-350-1
USN-354-1
VU#265964
http://www.kb.cert.org/vuls/id/265964
http://www.mozilla.org/security/announce/2006/mfsa2006-48.html
https://issues.rpath.com/browse/RPL-536
https://issues.rpath.com/browse/RPL-537
mozilla-javascript-garbage-race-condition(27984)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27984
oval:org.mitre.oval:def:10635
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10635
Common Vulnerability Exposure (CVE) ID: CVE-2006-3804
102763
ADV-2007-0058
VU#897540
http://www.kb.cert.org/vuls/id/897540
http://www.mozilla.org/security/announce/2006/mfsa2006-49.html
mozilla-vcard-base64-bo(27985)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27985
oval:org.mitre.oval:def:11395
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11395
Common Vulnerability Exposure (CVE) ID: CVE-2006-3806
21634
21654
21675
http://secunia.com/advisories/21675
DSA-1159
DSA-1160
DSA-1161
http://www.debian.org/security/2006/dsa-1161
VU#655892
http://www.kb.cert.org/vuls/id/655892
http://www.mozilla.org/security/announce/2006/mfsa2006-50.html
mozilla-javascript-engine-overflow(27987)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27987
oval:org.mitre.oval:def:11232
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11232
Common Vulnerability Exposure (CVE) ID: CVE-2006-3807
VU#687396
http://www.kb.cert.org/vuls/id/687396
http://www.mozilla.org/security/announce/2006/mfsa2006-51.html
mozilla-js-constructor-code-execution(27988)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27988
oval:org.mitre.oval:def:10374
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10374
Common Vulnerability Exposure (CVE) ID: CVE-2006-3113
BugTraq ID: 19197
http://www.securityfocus.com/bid/19197
Bugtraq: 20060727 Secunia Research: Mozilla Firefox XPCOM Event Handling MemoryCorruption (Google Search)
http://www.securityfocus.com/archive/1/441330/100/0/threaded
CERT/CC vulnerability note: VU#239124
http://www.kb.cert.org/vuls/id/239124
http://secunia.com/secunia_research/2006-53/advisory/
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10261
XForce ISS Database: mozilla-xpcom-memory-corruption(27982)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27982
Common Vulnerability Exposure (CVE) ID: CVE-2006-3801
VU#476724
http://www.kb.cert.org/vuls/id/476724
http://www.mozilla.org/security/announce/2006/mfsa2006-44.html
mozilla-deleted-frame-code-execution(27980)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27980
oval:org.mitre.oval:def:11501
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11501
Common Vulnerability Exposure (CVE) ID: CVE-2006-3802
http://www.mozilla.org/security/announce/2006/mfsa2006-47.html
mozilla-dom-method-xss(27983)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27983
oval:org.mitre.oval:def:9611
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9611
Common Vulnerability Exposure (CVE) ID: CVE-2006-3805
VU#876420
http://www.kb.cert.org/vuls/id/876420
mozilla-garbage-collection-object-deletion(27986)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27986
oval:org.mitre.oval:def:10690
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10690
Common Vulnerability Exposure (CVE) ID: CVE-2006-3808
http://www.mozilla.org/security/announce/2006/mfsa2006-52.html
mozilla-pac-code-execution(27989)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27989
oval:org.mitre.oval:def:10845
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10845
Common Vulnerability Exposure (CVE) ID: CVE-2006-3809
http://www.mozilla.org/security/announce/2006/mfsa2006-53.html
mozilla-universalbrowserread-escalation(27990)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27990
oval:org.mitre.oval:def:9753
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9753
Common Vulnerability Exposure (CVE) ID: CVE-2006-3810
VU#911004
http://www.kb.cert.org/vuls/id/911004
http://www.mozilla.org/security/announce/2006/mfsa2006-54.html
mozilla-xpcnativewrapper-xss(27991)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27991
oval:org.mitre.oval:def:10113
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10113
Common Vulnerability Exposure (CVE) ID: CVE-2006-3811
102971
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102971-1
25839
http://secunia.com/advisories/25839
ADV-2007-2350
http://www.vupen.com/english/advisories/2007/2350
VU#527676
http://www.kb.cert.org/vuls/id/527676
http://www.mozilla.org/security/announce/2006/mfsa2006-55.html
mozilla-multiple-memory-corruption(27992)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27992
oval:org.mitre.oval:def:9934
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9934
Common Vulnerability Exposure (CVE) ID: CVE-2006-3812
VU#398492
http://www.kb.cert.org/vuls/id/398492
http://www.mozilla.org/security/announce/2006/mfsa2006-56.html
mozilla-chrome-information-disclosure(27993)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27993
oval:org.mitre.oval:def:11013
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11013
CopyrightCopyright (c) 2006 E-Soft Inc. http://www.securityspace.com

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.