Summary
Ubuntu Update for Linux kernel vulnerabilities USN-398-1
Solution
Please Install the Updated Packages.
Insight
Various flaws have been reported that allow an attacker to execute arbitrary code with user privileges by tricking the user into opening a malicious web page containing JavaScript or SVG. (CVE-2006-6497, CVE-2006-6498, CVE-2006-6499, CVE-2006-6501, CVE-2006-6502, CVE-2006-6504)
Various flaws have been reported that allow an attacker to bypass Firefox's internal XSS protections by tricking the user into opening a malicious web page containing JavaScript. (CVE-2006-6503, CVE-2006-6507)
Jared Breland discovered that the "
Feed Preview"
feature could leak
referrer information to remote servers. (CVE-2006-6506)
Affected
firefox vulnerabilities on Ubuntu 6.10
Severity
Classification
-
CVE CVE-2006-6497, CVE-2006-6498, CVE-2006-6499, CVE-2006-6501, CVE-2006-6502, CVE-2006-6503, CVE-2006-6504, CVE-2006-6506, CVE-2006-6507 -
CVSS Base Score: 9.3
AV:N/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities