[CentOS] Firefox 1.5.0.3 in CentOSPlus?

Sun May 14 16:49:55 UTC 2006
Mike Stankovic <mlists2006 at yahoo.com>

Firefox 1.5.0.3 is a security fix from mozilla (see
http://www.mozilla.com/firefox/releases/1.5.0.3.html) 

>From that page you see :-

Firefox 1.5.0.3 is a security update that is part of
our ongoing program to provide a safe Internet
experience for our 

customers. We recommend that all users upgrade to this
latest version.

    * Security fix for denial of service
vulnerability. (see
http://www.mozilla.org/security/announce/2006/mfsa2006-30.html)

Release Date: May 2, 2006

Inline with its goals, the Fedora Project does not
provide backports and so they released 1.5.0.3 as a
security update. They did not put a message on
Fedora-announce as they did with 1.5.0.2 in April. But
you can see the announcement at :-
http://lwn.net/Articles/183435/


Update Information:

A bug was found in the way Firefox handles
iframe.contentWindow.focus() calls.  A malicious web
page could potentially execute arbitrary code as the
user running firefox.

Users of Firefox are advised to update to this
package,
which contains a version of Firefox not vulnerable to
this issue.

__________________________________________________
Improve the mailing list by performing a simple search 
before posting and reading the FAQ/etiquette. Protect the
integrity of your installation with the yum plugins.

__________________________________________________
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com