Windows BBS The Place for Microsoft Windows Support! Windows, Support, Help Site

Go Back   Windows BBS > Internet & Networking > Firefox, Thunderbird & SeaMonkey

Firefox, Thunderbird & SeaMonkey Post your questions about Mozilla based products (Firefox, Thunderbird & SeaMonkey) here.

Register your FREE account to unlock additional features at WindowsBBS.com
Register
Welcome to WindowsBBS.com
Microsoft Windows Support

Mission Statement

WindowsBBS is an online community dedicated to easily accessible technical support for those using Microsoft operating systems and other Windows software.

Our goal is to become the leading resource for computer users that require assistance with their day-to-day computer usage, including full support for networking PC's, virus & malware removal, system upgrades and general support questions.


Discussion Forums
Operating Systems
Windows 7 Windows 7
Windows Vista Windows Vista
Windows XP Windows XP
Windows Server System Windows Server System
Windows 2000 Windows 2000
Windows 95/98/Me/NT Windows 95/98/Me/NT
Internet & Networking
Networking
Internet Explorer
Microsoft Mail
Firefox, Thunderbird
      & SeaMonkey

General Internet
Security
General Security
Malware and Virus
     Removal

Other
Other Software
Hardware
Test Posts
Community
Introductions
General Discussions
Comments
      & Suggestions

News @ WindowsBBS

Forum Sponsor
 Image

Reply
 
LinkBack Thread Tools
Old 17th December 2008   #1
WindowsBBS Team Member
 
Ramona's Avatar
 
Profile:
Join Date: Dec 2001
Location: Missouri
Posts: 7,493
Computer Experience:
Experienced Learner
Ramona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation Level

My System

Mozilla SeaMonkey Multiple Vulnerabilities

TITLE:
Mozilla SeaMonkey Multiple Vulnerabilities
Quote:
SECUNIA ADVISORY ID:
SA33204

VERIFY ADVISORY:
http://secunia.com/advisories/33204/

CRITICAL:
Highly critical

IMPACT:
Security Bypass, Cross Site Scripting, Exposure of sensitive
information, System access

WHERE:
>From remote

SOFTWARE:
Mozilla SeaMonkey 1.1.x
http://secunia.com/advisories/product/14383/

DESCRIPTION:
Some vulnerabilities have been reported in Mozilla SeaMonkey, which
can be exploited by malicious people to bypass certain security
restrictions, disclose sensitive information, conduct cross-site
scripting attacks, or potentially compromise a user's system.

For more information:
SA33184

The vulnerabilities are reported in versions prior to 1.1.14.

SOLUTION:
Update to version 1.1.14.

ORIGINAL ADVISORY:
http://www.mozilla.org/security/anno...sa2008-60.html
http://www.mozilla.org/security/anno...sa2008-61.html
http://www.mozilla.org/security/anno...sa2008-64.html
http://www.mozilla.org/security/anno...sa2008-65.html
http://www.mozilla.org/security/anno...sa2008-66.html
http://www.mozilla.org/security/anno...sa2008-67.html
http://www.mozilla.org/security/anno...sa2008-68.html

OTHER REFERENCES:
SA33184:
http://secunia.com/advisories/33184/
Download Version 1.1.14 Here: http://www.seamonkey-project.org/releases/
Release Notes: http://www.seamonkey-project.org/rel...amonkey1.1.14/

What's New in SeaMonkey 1.1.14

Security and stability fixes

Ramona is offline   Reply With Quote
Didn't find the information you thought to find?
Check out these Similar Threads
Old 18th December 2008   #2
WindowsBBS Team Member
 
Profile:
Join Date: Mar 2003
Location: Omaha,NE
Posts: 3,862
Computer Experience:
Intermediate
Westside Reputation LevelWestside Reputation LevelWestside Reputation LevelWestside Reputation LevelWestside Reputation LevelWestside Reputation LevelWestside Reputation LevelWestside Reputation Level


Ramona,
do you know if Seamonkey mail is, in any way, like Thunderbird? In other words, is unpatched Seamonkey mail paralleling the still unpatched Thunderbird (although the browser is ok)?

Westside is offline   Reply With Quote
Old 19th December 2008   #3
WindowsBBS Team Member
 
Ramona's Avatar
 
Profile:
Join Date: Dec 2001
Location: Missouri
Posts: 7,493
Computer Experience:
Experienced Learner
Ramona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation Level

My System

Westside,

SeaMonkey and Thunderbird share lots of code, but perhaps not the exact same code. SeaMonkey developers used releases of code derived from the original Mozilla Suite. For instance, what would have been Mozilla 1.8 was SeaMonkey 1.0.

SeaMonkey and Firefox share the same Mozilla Code.

Now whether or not the unpatched Thunderbird mail does, in fact, parallel the Seamonkey Mail is an unknown factor. I have asked, and if answered, will let you know.

Ramona is offline   Reply With Quote
Old 24th December 2008   #4
WindowsBBS Team Member
 
Ramona's Avatar
 
Profile:
Join Date: Dec 2001
Location: Missouri
Posts: 7,493
Computer Experience:
Experienced Learner
Ramona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation LevelRamona Reputation Level

My System

Westside,

The SeaMonkey problem was fixed in Version 1.1.14. See this Mozilla Foundation Security Advisory 2008-60

I could not, however, get confirmation that SM's Mail Client, and TB share the exact code...

Ramona is offline   Reply With Quote
Old 1st January 2009   #5
Member
 
Profile:
Join Date: Jan 2009
Posts: 10
Computer Experience:
Advanced
partanonymous Reputation Level


Quote:
Originally Posted by Westside View Post
Ramona,
do you know if Seamonkey mail is, in any way, like Thunderbird? In other words, is unpatched Seamonkey mail paralleling the still unpatched Thunderbird (although the browser is ok)?
SeaMonkey shares the codebase of Firefox and Thunderbird, more than likely the 1.x-2.0.x versions. Mozilla is notorious for releasing a patch for Thunderbird anywhere from a week or more later than it does for Firefox and SeaMonkey. In other words, Firefox and SeaMonkey typically have patched versions available when Mozilla releases their security advisories. Thunderbird, on the other hand, does not always have a patched version available at the same time Mozilla releases their security advisories. You should be okay as long as you upgrade to the Mozilla recommended release.

partanonymous is offline   Reply With Quote
Old 1st January 2009   #6
WindowsBBS Team Member
 
Profile:
Join Date: Mar 2003
Location: Omaha,NE
Posts: 3,862
Computer Experience:
Intermediate
Westside Reputation LevelWestside Reputation LevelWestside Reputation LevelWestside Reputation LevelWestside Reputation LevelWestside Reputation LevelWestside Reputation LevelWestside Reputation Level


Thunderbird2.0.0.19 came out on Dec.30. Seamonkey, being a volunteer effort, not part of Mozilla, will come out.
Westside is offline   Reply With Quote
Reply

Thread Tools


Similar Threads
Thread Thread Starter Forum Replies Last Post
Mozilla SeaMonkey Multiple Vulnerabilities 02/08/08 Ramona Firefox, Thunderbird & SeaMonkey 2 14th February 2008 21:56
Mozilla SeaMonkey Multiple Vulnerabilities Ramona Firefox, Thunderbird & SeaMonkey 1 26th July 2007 15:56
Mozilla Firefox and SeaMonkey Multiple Vulnerabilities Ramona Firefox, Thunderbird & SeaMonkey 2 8th November 2006 22:39
Mozilla SeaMonkey Multiple Vulnerabilities Ramona Firefox, Thunderbird & SeaMonkey 0 14th April 2006 23:25
Mozilla / Firefox / Thunderbird Multiple Vulnerabilities Ramona Firefox, Thunderbird & SeaMonkey 0 1st March 2005 22:45


All times are GMT +1. The time now is 02:15.






Advertisements do not imply our endorsement of the product or service advertised.
Powered by vBulletin® Version 3.8.3
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0
Copyright © 2002 - 2009 WindowsBBS.com. All rights reserved.
Terms of Use, Legal Information & Privacy Policy
[]