Upstream information
CVE-2011-3658 at MITRE
Description
The SVG implementation in Mozilla Firefox 8.0, Thunderbird 8.0, and SeaMonkey 2.5 does not properly interact with DOMAttrModified event handlers, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via vectors involving removal of SVG elements.
NVD CVSS v2 Base Score: 7.5 (AV:N/AC:L/Au:N/C:P/I:P/A:P)
Novell/SUSE information
Novell Bugzilla entries:
737533,
746591,
747320,
750044
SUSE Security Advisories:
- openSUSE-SU-2012:0007-1, published Thu, 5 Jan 2012 12:08:18 +0100 (CET)
- openSUSE-SU-2012:0039-1, published Thu, 5 Jan 2012 12:35:43 +0100 (CET)
- openSUSE-SU-2012:0039-2, published Thu, 9 Feb 2012 19:09:53 +0100 (CET)
- openSUSE-SU-2012:0417-1, published Tue, 27 Mar 2012 10:08:48 +0200 (CEST)
- openSUSE-SU-2012:0567-1, published Fri, 27 Apr 2012 15:08:15 +0200 (CEST)
List of released packages
| Product(s) | Fixed package version(s) | References |
| openSUSE 11.4 DEBUGINFO | MozillaFirefox-debuginfo >= 9.0-0.2.1 MozillaFirefox-debugsource >= 9.0-0.2.1 mozilla-js192-debuginfo >= 1.9.2.25-0.2.1 mozilla-js192-debuginfo-32bit >= 1.9.2.25-0.2.1 mozilla-xulrunner192-debuginfo >= 1.9.2.25-0.2.1 mozilla-xulrunner192-debuginfo-32bit >= 1.9.2.25-0.2.1 mozilla-xulrunner192-debugsource >= 1.9.2.25-0.2.1 mozilla-xulrunner192-devel-debuginfo >= 1.9.2.25-0.2.1 mozilla-xulrunner192-gnome-debuginfo >= 1.9.2.25-0.2.1 mozilla-xulrunner192-gnome-debuginfo-32bit >= 1.9.2.25-0.2.1
| |
| openSUSE 11.4 | MozillaFirefox >= 9.0-0.2.1 MozillaFirefox-branding-upstream >= 9.0-0.2.1 MozillaFirefox-buildsymbols >= 9.0-0.2.1 MozillaFirefox-devel >= 9.0-0.2.1 MozillaFirefox-translations-common >= 9.0-0.2.1 MozillaFirefox-translations-other >= 9.0-0.2.1 mozilla-js192 >= 1.9.2.25-0.2.1 mozilla-js192-32bit >= 1.9.2.25-0.2.1 mozilla-xulrunner192 >= 1.9.2.25-0.2.1 mozilla-xulrunner192-32bit >= 1.9.2.25-0.2.1 mozilla-xulrunner192-buildsymbols >= 1.9.2.25-0.2.1 mozilla-xulrunner192-devel >= 1.9.2.25-0.2.1 mozilla-xulrunner192-gnome >= 1.9.2.25-0.2.1 mozilla-xulrunner192-gnome-32bit >= 1.9.2.25-0.2.1 mozilla-xulrunner192-translations-common >= 1.9.2.25-0.2.1 mozilla-xulrunner192-translations-common-32bit >= 1.9.2.25-0.2.1 mozilla-xulrunner192-translations-other >= 1.9.2.25-0.2.1 mozilla-xulrunner192-translations-other-32bit >= 1.9.2.25-0.2.1
| |
openSUSE 11.3 openSUSE 11.4 | seamonkey >= 2.6-0.2.1 seamonkey-dom-inspector >= 2.6-0.2.1 seamonkey-irc >= 2.6-0.2.1 seamonkey-translations-common >= 2.6-0.2.1 seamonkey-translations-other >= 2.6-0.2.1 seamonkey-venkman >= 2.6-0.2.1
| |
openSUSE 11.3 openSUSE 11.4 DEBUGINFO | seamonkey-debuginfo >= 2.6-0.2.1 seamonkey-debugsource >= 2.6-0.2.1
| |