[VIM] SeaMonkey 1.1.3 coverage

Steven M. Christey coley at mitre.org
Mon Jul 30 21:14:17 UTC 2007


as prompted by this:

   ftp://ftp.slackware.com/pub/slackware/slackware-12.0/ChangeLog.txt

   SECUNIA:26205

The changelog says "Upgraded to seamonkey-1.1.3. This is presumably a
security update, but the details on the net have been sparse. So far
nothing has appeared at the usual URL"

Josh Bressers of Red Hat, who works closely on the Mozilla product
line, has confirmed to me that the issues for this release are the
same as those mentioned in RHSA-2007-0722:

  http://rhn.redhat.com/errata/RHSA-2007-0722.html

Specifically:

   CVE-2007-3089
   CVE-2007-3656
   CVE-2007-3734
   CVE-2007-3735
   CVE-2007-3736
   CVE-2007-3737
   CVE-2007-3738

The associated Mozilla advisories do *not* mention SeaMonkey at all,
and the Mozilla security page includes a pointer to a 1.1.3 list of
vulns, but it's not up yet.

- Steve


More information about the VIM mailing list