Fedora 14 : firefox-3.6.12-1.fc14 / galeon-2.0.7-35.fc14.1 / gnome-python2-extras-2.25.3-25.fc14.1 / etc (2010-16897)

This script is Copyright (C) 2010-2016 Tenable Network Security, Inc.


Synopsis :

The remote Fedora host is missing one or more security updates.

Description :

Update to new upstream Firefox version 3.6.12, fixing multiple
security issues detailed in the upstream advisories :

-
http://www.mozilla.org/security/known-vulnerabilities/fi
refox36.html#firefox3.6.11

-
http://www.mozilla.org/security/known-vulnerabilities/
firefox36.html#firefox3.6.12

Update also includes all packages depending on gecko-libs rebuilt
against new version of Firefox / XULRunner.

Note that Tenable Network Security has extracted the preceding
description block directly from the Fedora security advisory. Tenable
has attempted to automatically clean and format it as much as possible
without introducing additional issues.

See also :

http://www.nessus.org/u?ebdf7518
http://www.nessus.org/u?8a7474ff
https://bugzilla.redhat.com/show_bug.cgi?id=642272
https://bugzilla.redhat.com/show_bug.cgi?id=642275
https://bugzilla.redhat.com/show_bug.cgi?id=642277
https://bugzilla.redhat.com/show_bug.cgi?id=642283
https://bugzilla.redhat.com/show_bug.cgi?id=642286
https://bugzilla.redhat.com/show_bug.cgi?id=642290
https://bugzilla.redhat.com/show_bug.cgi?id=642294
https://bugzilla.redhat.com/show_bug.cgi?id=642300
https://bugzilla.redhat.com/show_bug.cgi?id=646997
http://www.nessus.org/u?5e5101ce
http://www.nessus.org/u?d414eb29
http://www.nessus.org/u?c2308b45
http://www.nessus.org/u?d6343bde
http://www.nessus.org/u?3b69c90e
http://www.nessus.org/u?0f9a0937
http://www.nessus.org/u?1d35dfe9

Solution :

Update the affected packages.

Risk factor :

High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 7.3
(CVSS2#E:POC/RL:OF/RC:C)
Public Exploit Available : true

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now