1
PublicDateAtUSN: 2010-06-24
2
Candidate: CVE-2010-1198
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1198
6
https://usn.ubuntu.com/usn/usn-930-1
7
https://usn.ubuntu.com/usn/usn-930-4
9
Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.10 and
10
3.6.x before 3.6.4, and SeaMonkey before 2.0.5, allows remote attackers to
11
execute arbitrary code via vectors involving multiple plugin instances.
14
jdstrand> CVEs in Firefox are tracked in the xulrunner source packages. The
15
mapping of xulrunner sources to firefox is:
16
xulrunner (1.8.0): firefox (1.5) - Ubuntu 6.06 LTS
17
xulrunner (1.8.1): firefox (2.0) - Ubuntu 6.10 - 8.04 LTS
18
xulrunner-1.9: firefox-3.0
19
xulrunner-1.9.1: firefox-3.5
20
jdstrand: Ubuntu 6.06 LTS and 10.04 LTS uses the embedded xulrunner and not
21
the system xulrunner-1.9.2, so it is tracked in the firefox source package.
28
upstream_firefox: needs-triage
29
dapper_firefox: ignored (reached end-of-life)
30
hardy_firefox: ignored (uses system xulrunner)
33
lucid_firefox: released (3.6.6+nobinonly-0ubuntu0.10.04.1)
34
maverick_firefox: released (3.6.7+build2+nobinonly-0ubuntu1)
35
natty_firefox: released (3.6.7+build2+nobinonly-0ubuntu1)
36
oneiric_firefox: released (3.6.7+build2+nobinonly-0ubuntu1)
37
devel_firefox: released (3.6.7+build2+nobinonly-0ubuntu1)
41
upstream_xulrunner: needs-triage
43
hardy_xulrunner: ignored (reached end-of-life)
44
jaunty_xulrunner: ignored (reached end-of-life)
45
karmic_xulrunner: ignored (reached end-of-life)
47
maverick_xulrunner: DNE
49
oneiric_xulrunner: DNE
52
Patches_xulrunner-1.9:
53
upstream_xulrunner-1.9: needs-triage
54
dapper_xulrunner-1.9: DNE
55
hardy_xulrunner-1.9: ignored (reverse dependencies no longer process web content)
56
jaunty_xulrunner-1.9: ignored (reverse dependencies no longer process web content)
57
karmic_xulrunner-1.9: DNE
58
lucid_xulrunner-1.9: DNE
59
maverick_xulrunner-1.9: DNE
60
natty_xulrunner-1.9: DNE
61
oneiric_xulrunner-1.9: DNE
62
devel_xulrunner-1.9: DNE
64
Patches_xulrunner-1.9.1:
65
upstream_xulrunner-1.9.1: needs-triage
66
dapper_xulrunner-1.9.1: DNE
67
hardy_xulrunner-1.9.1: DNE
68
jaunty_xulrunner-1.9.1: ignored (use firefox-3.0 instead)
69
karmic_xulrunner-1.9.1: ignored (reverse dependencies no longer process web content)
70
lucid_xulrunner-1.9.1: DNE
71
maverick_xulrunner-1.9.1: DNE
72
natty_xulrunner-1.9.1: DNE
73
oneiric_xulrunner-1.9.1: DNE
74
devel_xulrunner-1.9.1: DNE
76
Patches_xulrunner-1.9.2:
77
upstream_xulrunner-1.9.2: needs-triage
78
dapper_xulrunner-1.9.2: DNE
79
hardy_xulrunner-1.9.2: released (1.9.2.6+nobinonly-0ubuntu0.8.04.1)
80
jaunty_xulrunner-1.9.2: released (1.9.2.7+build2+nobinonly-0ubuntu0.9.04.2)
81
karmic_xulrunner-1.9.2: released (1.9.2.7+build2+nobinonly-0ubuntu0.9.10.2)
82
lucid_xulrunner-1.9.2: released (1.9.2.6+nobinonly-0ubuntu0.10.04.1)
83
maverick_xulrunner-1.9.2: released (1.9.2.7+build2+nobinonly-0ubuntu1)
84
natty_xulrunner-1.9.2: released (1.9.2.7+build2+nobinonly-0ubuntu1)
85
oneiric_xulrunner-1.9.2: DNE
86
devel_xulrunner-1.9.2: DNE
90
upstream_seamonkey: released (2.0.5)
92
hardy_seamonkey: released (2.0.8+build1+nobinonly-0ubuntu0.8.04.1)
93
jaunty_seamonkey: released (2.0.8+build1+nobinonly-0ubuntu0.9.04.1)
94
karmic_seamonkey: released (2.0.8+build1+nobinonly-0ubuntu0.9.10.1)
95
lucid_seamonkey: released (2.0.6+build1+nobinonly-0ubuntu0.10.04.1)
96
maverick_seamonkey: released (2.0.6+build1+nobinonly-0ubuntu1)
97
natty_seamonkey: released (2.0.6+build1+nobinonly-0ubuntu1)
98
oneiric_seamonkey: released (2.0.6+build1+nobinonly-0ubuntu1)
99
devel_seamonkey: released (2.0.6+build1+nobinonly-0ubuntu1)