GLSA Advocate

Joined: 12 May 2004 Posts: 2550
|
Posted: Wed Dec 09, 2020 4:26 pm Post subject: [ GLSA 202012-02 ] SeaMonkey |
|
|
Gentoo Linux Security Advisory
Title: SeaMonkey: Multiple vulnerabilities (GLSA 202012-02)
Severity: normal
Exploitable: local, remote
Date: 2020-12-07
Bug(s): #718738, #718746
ID: 202012-02
Synopsis
Multiple vulnerabilities have been found in SeaMonkey, the worst of
which could result in the arbitrary execution of code.
Background
The SeaMonkey project is a community effort to deliver
production-quality releases of code derived from the application formerly
known as “Mozilla Application Suite”.
Affected Packages
Package: www-client/seamonkey
Vulnerable: < 2.53.5.1
Unaffected: >= 2.53.5
Architectures: All supported architectures
Package: www-client/seamonkey-bin
Vulnerable: <= 2.49.1_rc2
Architectures: All supported architectures
Description
Multiple vulnerabilities have been discovered in SeaMonkey. Please
review referenced release notes for more details.
Impact
Please review the referenced release notes for details.
Workaround
There is no known workaround at this time.
Resolution
All SeaMonkey users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=www-client/seamonkey-2.53.5.1"
| Gentoo has discontinued support for the SeaMonkey binary package. We
recommend that users unmerge the SeaMonkey binary package:
# emerge --unmerge “www-client/seamonkey-bin”NOTE: The Gentoo developer(s) maintaining the SeaMonkey binary package
have discontinued support at this time. It may be possible that a new
Gentoo developer will update it at a later date. The alternative is using
the standard SeaMonkey package.
References
SeaMonkey 2.53.2 Release Notes
SeaMonkey 2.53.3 Release Notes
SeaMonkey 2.53.4 Release Notes
SeaMonkey 2.53.5 Release Notes
SeaMonkey 2.53.5.1 Release Notes
|
|