-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
[ Camino 1.6.10 Remote Array Overrun (Arbitrary code execution) ]
Author: Maksymilian Arciemowicz and sp3x
http://SecurityReason.com
Date:
- - Dis.: 07.05.2009
- - Pub.: 11.12.2009
It appears that Camino Project has released new security update version 1.5.1 recently.
Reference:
Camino 1.5.1 Release Notes
http://www.caminobrowser.org/releases/1.5.1/
"Upgraded to version 1.8.1.6 of the Mozilla Gecko rendering engine, which includes several critical security and stability fixes."
Gecko 1.8.1.6 is the codebase of Mozilla Firefox 2.0.0.6:
http://www.mozilla.org/projects/security/known-vulnerabilities.html#Firefox
- - Google Chrome
- - Mozilla Firefox
- - Mozilla Seamonkey
- - Mozilla Thunderbird
- - Mozilla Sunbird
- - Mozilla Camino
- - KDE (example: konqueror)
- - Opera
- - K-Meleon
- - F-Lock
- - MatLab
- - Google Chrome
- - Mozilla Firefox
- - Mozilla Seamonkey
- - Mozilla Thunderbird
- - Mozilla Sunbird
- - Mozilla Camino
- - KDE (example: konqueror)
- - Opera
- - K-Meleon
- - F-Lock
Camino 1.5.2 Release Notes document is available at
http://caminobrowser.org/releases/1.5.2/
"Camino 1.5.2 contains the following improvements over version 1.5.1:
* Upgraded to version 1.8.1.8 of the Mozilla Gecko rendering engine, which includes several critical security and stability fixes."
Affected products:
Camino versions 0.x and 1.x
Solution: