<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="6393a99a5913d7d11ba39976c6a96737"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="238">
  <id>seamonkey</id>
  <title>seamonkey: Update to 1.1.12 security update version</title>
  <release>openSUSE 11.0</release>
  <issued date="1223023967"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=429179" id="429179" title="bug number 429179" type="bugzilla"/>
  </references>
  <description>This patch updates Seamonkey to version 1.1.12, fixing
security and other bugs:

MFSA 2008-45 / CVE-2008-4069: XBM image uninitialized
memory reading

MFSA 2008-44 / CVE-2008-4067 / CVE-2008-4068: resource:
traversal vulnerabilities

MFSA 2008-43: BOM characters stripped from JavaScript
before execution CVE-2008-4065: Stripped BOM characters bug
CVE-2008-4066: HTML escaped low surrogates bug

MFSA 2008-42 Crashes with evidence of memory corruption
(rv:1.9.0.2/1.8.1.17): CVE-2008-4061: Jesse Ruderman
reported a crash in the layout engine. CVE-2008-4062: Igor
Bukanov, Philip Taylor, Georgi Guninski, and Antoine Labour
reported crashes in the JavaScript engine. CVE-2008-4063:
Jesse Ruderman, Bob Clary, and Martijn Wargers reported
crashes in the layout engine which only affected Firefox 3.
CVE-2008-4064: David Maciejak and Drew Yao reported crashes
in graphics rendering which only affected Firefox 3.

MFSA 2008-41 Privilege escalation via XPCnativeWrapper
pollution CVE-2008-4058: XPCnativeWrapper pollution bugs
CVE-2008-4059: XPCnativeWrapper pollution (Firefox 2)
CVE-2008-4060: Documents without script handling objects

MFSA 2008-40 / CVE-2008-3837: Forced mouse drag

MFSA 2008-38 / CVE-2008-3835:
nsXMLDocument::OnChannelRedirect() same-origin violation

MFSA 2008-37 / CVE-2008-0016: UTF-8 URL stack buffer
overflow

Details can be found here:
http://www.mozilla.org/security/known-vulnerabilities/seamon
key11.html
</description>
  <pkglist>
    <collection>
        <package name="seamonkey" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-1.1.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-dom-inspector" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-dom-inspector-1.1.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-irc-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-irc-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-irc" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-irc-1.1.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-mail-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-mail-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-mail" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-mail-1.1.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-spellchecker-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-spellchecker-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-spellchecker" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-spellchecker-1.1.12-0.1.x86_64.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="i586" version="1.1.12" release="0.1">
          <filename>seamonkey-venkman-1.1.12-0.1.i586.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="ppc" version="1.1.12" release="0.1">
          <filename>seamonkey-venkman-1.1.12-0.1.ppc.rpm</filename>
        </package>
        <package name="seamonkey-venkman" arch="x86_64" version="1.1.12" release="0.1">
          <filename>seamonkey-venkman-1.1.12-0.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
