-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 -------------------------------------------------------------------------- Turbolinux Security Advisory TLSA-2008-9 http://www.turbolinux.co.jp/security/ security-team@turbolinux.co.jp -------------------------------------------------------------------------- Original released date: 14 Feb 2008 Last revised: 14 Feb 2008 Package: firefox Summary: Multiple vulnerabilities exist in firefox More information: Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability. Multiple vulnerabilities have been discovered in firefox. Impact: Please refer to the "References" section. Affected Products: - Turbolinux 11 Server x64 Edition - Turbolinux 11 Server - wizpy - Turbolinux FUJI ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/x64/Server/11/updates/SRPMS/firefox-2.0.0.12-1.src.rpm 38042675 376126da670bdaccdd0cf12d5864c101 Binary Packages Size: MD5 firefox-2.0.0.12-1.x86_64.rpm 12691413 fed262c071d6f5e4c7cddd9cb07f1ea9 firefox-devel-2.0.0.12-1.x86_64.rpm 4294419 2b91567a7eeee5e931f56dc9982e28b3 ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/11/updates/SRPMS/firefox-2.0.0.12-1.src.rpm 38042675 1d6ea2fd30dd08bbe1aa09821bdccce9 Binary Packages Size: MD5 firefox-2.0.0.12-1.i686.rpm 11352968 88901f1ff76726509ae0366ac4a31816 firefox-devel-2.0.0.12-1.i686.rpm 4293331 28dad002139c0e27fde5185383f61367 Source Packages Size: MD5 ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/wizpy/updates/SRPMS/firefox-2.0.0.12-1.src.rpm 38042675 e0dd9b91e9bab9bb96829b3c05aec7ab Binary Packages Size: MD5 firefox-2.0.0.12-1.i386.rpm 10197989 cd8898661c25e9a23991ddb729d8ee66 Source Packages Size: MD5 ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/11/updates/SRPMS/firefox-2.0.0.12-1.src.rpm 38042675 d56461f2bbe40eefbd145d389b3d9ac3 Binary Packages Size: MD5 firefox-2.0.0.12-1.i686.rpm 11849411 5d051a0fd4e9ca917dbb3188587de825 References: Mozilla Foundation [Known Vulnerabilities in Mozilla] http://www.mozilla.org/projects/security/known-vulnerabilities.html -------------------------------------------------------------------------- Revision History 14 Feb 2008 Initial release -------------------------------------------------------------------------- Copyright(C) 2008 Turbolinux, Inc. All rights reserved. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.8 (GNU/Linux) iEYEARECAAYFAkezqO4ACgkQK0LzjOqIJMz7dwCaAvhDJ0sVkAQIPsTDWrB1l8fJ REwAn273ySdsFOIT3rxnEc4UPGohEMyE =CAB4 -----END PGP SIGNATURE-----