New User, Welcome!     Login

Mozilla Camino

Camino 1.6.10 Remote Array Overrun (Arbitrary code execution)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

[ Camino 1.6.10 Remote Array Overrun (Arbitrary code execution) ]

Author: Maksymilian Arciemowicz and sp3x
http://SecurityReason.com
Date:
- - Dis.: 07.05.2009
- - Pub.: 11.12.2009

Camino release 1.5.1 fixes several vulnerabilities

It appears that Camino Project has released new security update version 1.5.1 recently.

Reference:
Camino 1.5.1 Release Notes
http://www.caminobrowser.org/releases/1.5.1/
"Upgraded to version 1.8.1.6 of the Mozilla Gecko rendering engine, which includes several critical security and stability fixes."

Gecko 1.8.1.6 is the codebase of Mozilla Firefox 2.0.0.6:
http://www.mozilla.org/projects/security/known-vulnerabilities.html#Firefox


MacOS X 10.5/10.6 libc/strtod(3) buffer overflow

- - Google Chrome
- - Mozilla Firefox
- - Mozilla Seamonkey
- - Mozilla Thunderbird
- - Mozilla Sunbird
- - Mozilla Camino
- - KDE (example: konqueror)
- - Opera
- - K-Meleon
- - F-Lock
- - MatLab

Flock 2.5.2 Remote Array Overrun (Arbitrary code execution)

- - Google Chrome
- - Mozilla Firefox
- - Mozilla Seamonkey
- - Mozilla Thunderbird
- - Mozilla Sunbird
- - Mozilla Camino
- - KDE (example: konqueror)
- - Opera
- - K-Meleon
- - F-Lock


Camino release 1.5.2 fixes several vulnerabilities

Camino 1.5.2 Release Notes document is available at
http://caminobrowser.org/releases/1.5.2/

"Camino 1.5.2 contains the following improvements over version 1.5.1:
* Upgraded to version 1.8.1.8 of the Mozilla Gecko rendering engine, which includes several critical security and stability fixes."

Affected products:
Camino versions 0.x and 1.x
 
Solution:



Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!