Upstream information

CVE-2011-0076 at MITRE

Description

Unspecified vulnerability in the Java Embedding Plugin (JEP) in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, on Mac OS X allows remote attackers to bypass intended access restrictions via unknown vectors.

SUSE information

Overall state of this security issue: Resolved

This issue is currently rated as having important severity.

CVSS v2 Scores
  National Vulnerability Database
Base Score 7.5
Vector AV:N/AC:L/Au:N/C:P/I:P/A:P
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact Partial
Integrity Impact Partial
Availability Impact Partial
SUSE Bugzilla entry: 689281 [RESOLVED / FIXED]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Server 11 SP1
  • MozillaFirefox >= 3.6.17-0.2.1
  • MozillaFirefox-translations >= 3.6.17-0.2.1
  • libfreebl3 >= 3.13.5-0.4.2
  • libfreebl3-32bit >= 3.13.5-0.4.2
  • libfreebl3-x86 >= 3.13.5-0.4.2
  • mozilla-nspr >= 4.9.1-0.5.1
  • mozilla-nspr-32bit >= 4.9.1-0.5.1
  • mozilla-nspr-x86 >= 4.9.1-0.5.1
  • mozilla-nss >= 3.13.5-0.4.2
  • mozilla-nss-32bit >= 3.13.5-0.4.2
  • mozilla-nss-tools >= 3.13.5-0.4.2
  • mozilla-nss-x86 >= 3.13.5-0.4.2
  • mozilla-xulrunner191 >= 1.9.1.11-0.1.1
  • mozilla-xulrunner191-32bit >= 1.9.1.11-0.1.1
  • mozilla-xulrunner191-gnomevfs >= 1.9.1.11-0.1.1
  • mozilla-xulrunner191-translations >= 1.9.1.11-0.1.1
  • mozilla-xulrunner191-x86 >= 1.9.1.11-0.1.1
  • mozilla-xulrunner192 >= 1.9.2.17-0.3.1
  • mozilla-xulrunner192-32bit >= 1.9.2.24-0.3.1
  • mozilla-xulrunner192-gnome >= 1.9.2.17-0.3.1
  • mozilla-xulrunner192-translations >= 1.9.2.17-0.3.1
  • mozilla-xulrunner192-x86 >= 1.9.2.24-0.3.1
Patchnames:
slessp1-MozillaFirefox
openSUSE 11.4
  • mozilla-js192 >= 1.9.2.17-0.2.2
  • mozilla-js192-32bit >= 1.9.2.17-0.2.2
  • mozilla-js192-debuginfo >= 1.9.2.17-0.2.2
  • mozilla-js192-debuginfo-32bit >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192 >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-32bit >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-buildsymbols >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-debuginfo >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-debuginfo-32bit >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-debugsource >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-devel >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-devel-debuginfo >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-gnome >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-gnome-32bit >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-gnome-debuginfo >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-gnome-debuginfo-32bit >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-translations-common >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-translations-common-32bit >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-translations-other >= 1.9.2.17-0.2.2
  • mozilla-xulrunner192-translations-other-32bit >= 1.9.2.17-0.2.2
Patchnames:
mozilla-js192