FS#14008 - firefox 3.0.7 is vulnerable to a memory corruption attack which allows execution of arbitrary code

Attached to Project: Arch Linux
Opened by Rorschach (Rorschach) - Sunday, 29 March 2009, 13:30 GMT
Last edited by Andreas Radke (AndyRTR) - Monday, 30 March 2009, 18:57 GMT
Task Type Bug Report
Category Security
Status Closed
Assigned To No-one
Architecture All
Severity Critical
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 1
Private No

Details

Description:
The Gran Paradiso version of archlinux is based on firefox 3.0.7 which is vulnerable to a memory corruption attack which may allow execution of arbitrary commands.

POC-exploit: http://milw0rm.com/exploits/8285

Fix: Upgrade Firefox to 3.0.8.
This task depends upon

Closed by  Andreas Radke (AndyRTR)
Monday, 30 March 2009, 18:57 GMT
Reason for closing:  Fixed

Loading...