SuSE: 2012:0261-1: critical: Mozilla Firefox
Summary
MozillaFirefox was updated to 10.0.1 to fix critical bugs
and security issue.
The following security issue has been fixed:
CVE-2012-0452: Mozilla developers Andrew McCreight and Olli
Pettay found that ReadPrototypeBindings will leave a XBL
binding in a hash table even when the function fails. If
this occurs, when the cycle collector reads this hash
table and attempts to do a virtual method on this binding a
crash will occur. This crash may be potentially
exploitable.
Firefox 9 and earlier are not affected by this
vulnerability.
tml
References
#744625 #744629 #746616
Cross- CVE-2012-0452
Affected Products:
SUSE Linux Enterprise Server 11 SP1 for VMware
SUSE Linux Enterprise Server 11 SP1 FOR SP2
SUSE Linux Enterprise Server 11 SP1
SUSE Linux Enterprise Desktop 11 SP1 FOR SP2
SUSE Linux Enterprise Desktop 11 SP1
https://www.suse.com/security/cve/CVE-2012-0452.html
https://bugzilla.novell.com/744625
https://bugzilla.novell.com/744629
https://bugzilla.novell.com/746616
https://login.microfocus.com/nidp/app/login