-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 _______________________________________________________________________ Mandriva Linux Security Advisory MDVSA-2013:237 http://www.mandriva.com/en/support/security/ _______________________________________________________________________ Package : firefox Date : September 18, 2013 Affected: Enterprise Server 5.0 _______________________________________________________________________ Problem Description: Multiple security issues was identified and fixed in mozilla firefox: Mozilla developers identified and fixed several memory safety bugs in the browser engine used in Firefox and other Mozilla-based products. Some of these bugs showed evidence of memory corruption under certain circumstances, and we presume that with enough effort at least some of these could be exploited to run arbitrary code (CVE-2013-1719). Security researcher Abhishek Arya (Inferno) of the Google Chrome Security Team used the Address Sanitizer tool to discover a use-after-free problem in the Animation Manager during the cloning of stylesheets. This can lead to a potentially exploitable crash (CVE-2013-1722). Mozilla community member Ms2ger found a mechanism where a new Javascript object with a compartment is uninitialized could be entered through web content. When the scope for this object is called, it leads to a potentially exploitable crash (CVE-2013-1725). Security researcher Sachin Shinde reported that moving certain XBL-backed nodes from a document into the replacement document created by document.open() can cause a JavaScript compartment mismatch which can often lead to exploitable conditions (CVE-2013-1730). Security researcher Aki Helin reported that combining lists, floats, and multiple columns could trigger a potentially exploitable buffer overflow (CVE-2013-1732). Security researcher Nils reported two potentially exploitable memory corruption bugs involving scrolling. The first was a use-after-free condition due to scrolling an image document. The second was due to nodes in a range request being added as children of two different parents (CVE-2013-1735, CVE-2013-1736). Mozilla developer Boris Zbarsky reported that user-defined getters on DOM proxies would incorrectly get the expando object as this. It is unlikely that this is directly exploitable but could lead to JavaScript client or add-on code making incorrect security sensitive decisions based on hacker supplied values (CVE-2013-1737). Additionally a problem was found and fixed in the python-virtualenv packages which is also being provided with this advisory. The mozilla firefox packages has been upgraded to the latest ESR version (17.0.9) which is unaffected by these security flaws. _______________________________________________________________________ References: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1719 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1722 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1725 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1730 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1732 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1735 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1736 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1737 http://www.mozilla.org/security/announce/2013/mfsa2013-76.html http://www.mozilla.org/security/announce/2013/mfsa2013-79.html http://www.mozilla.org/security/announce/2013/mfsa2013-82.html http://www.mozilla.org/security/announce/2013/mfsa2013-88.html http://www.mozilla.org/security/announce/2013/mfsa2013-89.html http://www.mozilla.org/security/announce/2013/mfsa2013-90.html http://www.mozilla.org/security/announce/2013/mfsa2013-91.html _______________________________________________________________________ Updated Packages: Mandriva Enterprise Server 5: 5b5064c83247a34f97b7cd86c3feb6cc mes5/i586/firefox-17.0.9-0.1mdvmes5.2.i586.rpm 2a1eae58890caa22fb287c4532f056a7 mes5/i586/firefox-af-17.0.9-0.1mdvmes5.2.i586.rpm 641e288ecf7880f1dcb4a545c798d6d5 mes5/i586/firefox-ar-17.0.9-0.1mdvmes5.2.i586.rpm 1a6485634ef4812ed27acac526ddac4b mes5/i586/firefox-be-17.0.9-0.1mdvmes5.2.i586.rpm 4c0a9651a31a46f1ff5f81d6b48d736c mes5/i586/firefox-bg-17.0.9-0.1mdvmes5.2.i586.rpm 3f8fdd0aa4f7a307a5b604dffb178a98 mes5/i586/firefox-bn-17.0.9-0.1mdvmes5.2.i586.rpm 9b89fbb391753a48933a49d9df5fd866 mes5/i586/firefox-ca-17.0.9-0.1mdvmes5.2.i586.rpm 9d0acfeb6ae81819ef48dbb6ed2dab81 mes5/i586/firefox-cs-17.0.9-0.1mdvmes5.2.i586.rpm a571f3bb6d7cefcaaba73f0c5f3d4e7c mes5/i586/firefox-cy-17.0.9-0.1mdvmes5.2.i586.rpm 9ec873fe7c8173b732af0ad59c309f03 mes5/i586/firefox-da-17.0.9-0.1mdvmes5.2.i586.rpm b924026dbbc7ed45a0407656925183a7 mes5/i586/firefox-de-17.0.9-0.1mdvmes5.2.i586.rpm bc358880b6618bbe603f5089db51efde mes5/i586/firefox-devel-17.0.9-0.1mdvmes5.2.i586.rpm f6b04a49396f9932a79b8de16d8edb4b mes5/i586/firefox-el-17.0.9-0.1mdvmes5.2.i586.rpm cc18775d86367715e2ce0d0c3655ce14 mes5/i586/firefox-en_GB-17.0.9-0.1mdvmes5.2.i586.rpm ece57b0d0e36e9b99dea82afa8ebc1ac mes5/i586/firefox-eo-17.0.9-0.1mdvmes5.2.i586.rpm bd7e9ffe78667e5bacc2c4c83bde7328 mes5/i586/firefox-es_AR-17.0.9-0.1mdvmes5.2.i586.rpm 21823a7492cc23d4156fd085539ddf63 mes5/i586/firefox-es_ES-17.0.9-0.1mdvmes5.2.i586.rpm e7e1a8ff529c934741fb91127ac68f74 mes5/i586/firefox-et-17.0.9-0.1mdvmes5.2.i586.rpm ab4a832e586327fc00028be1d287d5d9 mes5/i586/firefox-eu-17.0.9-0.1mdvmes5.2.i586.rpm 25d0faf90e915db00dc6b9c11dc96a9a mes5/i586/firefox-fi-17.0.9-0.1mdvmes5.2.i586.rpm ad75f2f5d8fa66876135128e78daa375 mes5/i586/firefox-fr-17.0.9-0.1mdvmes5.2.i586.rpm 1355c3475158a2bb771e472e8531932f mes5/i586/firefox-fy-17.0.9-0.1mdvmes5.2.i586.rpm 3450f9dbb4c1c8a2b822a1a82106d1c4 mes5/i586/firefox-ga_IE-17.0.9-0.1mdvmes5.2.i586.rpm 38bd68ae897f651b4a4cdeacc5348ec6 mes5/i586/firefox-gl-17.0.9-0.1mdvmes5.2.i586.rpm 6851606fbe48886e6a598b6dd5d834a4 mes5/i586/firefox-gu_IN-17.0.9-0.1mdvmes5.2.i586.rpm 221423592bbbd3d7c5db39d1ae8cbd44 mes5/i586/firefox-he-17.0.9-0.1mdvmes5.2.i586.rpm 9283bba5cd4d846007f3fcfed774c1d0 mes5/i586/firefox-hi-17.0.9-0.1mdvmes5.2.i586.rpm 3a968eaf43a344fe5793647d6f410acc mes5/i586/firefox-hu-17.0.9-0.1mdvmes5.2.i586.rpm 561fdc6bca2f5ebc3792b57a0b42346d mes5/i586/firefox-id-17.0.9-0.1mdvmes5.2.i586.rpm 4c046d63c55f70d9a521eee63674305a mes5/i586/firefox-is-17.0.9-0.1mdvmes5.2.i586.rpm b11d32b8eb722447e3776aa59d86c5fa mes5/i586/firefox-it-17.0.9-0.1mdvmes5.2.i586.rpm dafcfeb201e5f030352d7b1b6639c913 mes5/i586/firefox-ja-17.0.9-0.1mdvmes5.2.i586.rpm 15405cb5048424d334915b2f3b3ac3fe mes5/i586/firefox-kn-17.0.9-0.1mdvmes5.2.i586.rpm 7e9384490575dc1d8c59ed61fc9fd179 mes5/i586/firefox-ko-17.0.9-0.1mdvmes5.2.i586.rpm b1d548f00a54a514c49f5a56a8c4ec25 mes5/i586/firefox-ku-17.0.9-0.1mdvmes5.2.i586.rpm 0d93ec89b1445f51936e45959e58eb79 mes5/i586/firefox-lt-17.0.9-0.1mdvmes5.2.i586.rpm 75e66da8457c7efe247ca9e7aa85eaa1 mes5/i586/firefox-lv-17.0.9-0.1mdvmes5.2.i586.rpm bb77d2da3f01f370bbbf9126f0902dfa mes5/i586/firefox-mk-17.0.9-0.1mdvmes5.2.i586.rpm c9b72df6c7b137b3af7b714b57efd463 mes5/i586/firefox-mr-17.0.9-0.1mdvmes5.2.i586.rpm 0cda8bbef5c037b8a679e74b1efb33a6 mes5/i586/firefox-nb_NO-17.0.9-0.1mdvmes5.2.i586.rpm 3bf7a381a70fd134fede669447347c27 mes5/i586/firefox-nl-17.0.9-0.1mdvmes5.2.i586.rpm e957f3c98ef195630c79f6a019b7846c mes5/i586/firefox-nn_NO-17.0.9-0.1mdvmes5.2.i586.rpm 267824740f9c7a2c3301572bc731ad5c mes5/i586/firefox-pa_IN-17.0.9-0.1mdvmes5.2.i586.rpm fda4d037ed596cd8e10c7de41f5e2278 mes5/i586/firefox-pl-17.0.9-0.1mdvmes5.2.i586.rpm 694201984618c991dd24eaa56f26bcac mes5/i586/firefox-pt_BR-17.0.9-0.1mdvmes5.2.i586.rpm 8097a195090cd51c34fa00652ad40391 mes5/i586/firefox-pt_PT-17.0.9-0.1mdvmes5.2.i586.rpm 16181f665b6a12cebef16d72fa221324 mes5/i586/firefox-ro-17.0.9-0.1mdvmes5.2.i586.rpm 499d302b500803194c170508df6d33c5 mes5/i586/firefox-ru-17.0.9-0.1mdvmes5.2.i586.rpm e348ab64a308f7a737a5720a31e54097 mes5/i586/firefox-si-17.0.9-0.1mdvmes5.2.i586.rpm a1b2ddb9e5f7a6229c88b10faeca9f2f mes5/i586/firefox-sk-17.0.9-0.1mdvmes5.2.i586.rpm 78754f7913a97ce5b4d7f9afb7a9b82e mes5/i586/firefox-sl-17.0.9-0.1mdvmes5.2.i586.rpm 380a4ea46e9c2a6962ffc0d3c2de4573 mes5/i586/firefox-sq-17.0.9-0.1mdvmes5.2.i586.rpm 5988dd5fd29c2c5bad1e3ff664189062 mes5/i586/firefox-sr-17.0.9-0.1mdvmes5.2.i586.rpm a53b8077b15fd128ddf6f7053570478e mes5/i586/firefox-sv_SE-17.0.9-0.1mdvmes5.2.i586.rpm c1760818c070ab5c0c0732c2795d46f2 mes5/i586/firefox-te-17.0.9-0.1mdvmes5.2.i586.rpm d77e52f0f99d75e4fbdb086b39465b5e mes5/i586/firefox-th-17.0.9-0.1mdvmes5.2.i586.rpm abff3fc90310ef6ef1d5189637639bf1 mes5/i586/firefox-tr-17.0.9-0.1mdvmes5.2.i586.rpm 7677fa0302c87291d7468503178422fa mes5/i586/firefox-uk-17.0.9-0.1mdvmes5.2.i586.rpm a6fbce83abfdb03b21cc99497f085c83 mes5/i586/firefox-zh_CN-17.0.9-0.1mdvmes5.2.i586.rpm b67537bcfb8cd8aae65bf70274ff0e1c mes5/i586/firefox-zh_TW-17.0.9-0.1mdvmes5.2.i586.rpm 8b63c53c860021ca86503bb9a4d7b2e6 mes5/i586/icedtea-web-1.3.2-0.6mdvmes5.2.i586.rpm 6f509a0779011ad829624e87ca6134c4 mes5/i586/icedtea-web-javadoc-1.3.2-0.6mdvmes5.2.i586.rpm a3533c220ed8af756d246e23e671a3ec mes5/i586/libxulrunner17.0.9-17.0.9-0.1mdvmes5.2.i586.rpm cac010804d69a0a66a557d7ca47a1b31 mes5/i586/libxulrunner-devel-17.0.9-0.1mdvmes5.2.i586.rpm b00dafc6dd521caf75431780296d9769 mes5/i586/python-virtualenv-1.10.1-0.2mdvmes5.2.noarch.rpm b1f2142a430a9cd55d7482a1c701fc3b mes5/i586/xulrunner-17.0.9-0.1mdvmes5.2.i586.rpm 3f6d270dda4c5827220e47dccbbc8089 mes5/SRPMS/firefox-17.0.9-0.1mdvmes5.2.src.rpm dfab37ed53f96ef09cdb798205969d78 mes5/SRPMS/firefox-l10n-17.0.9-0.1mdvmes5.2.src.rpm 951372413bc7abcfd4358a5afc398d17 mes5/SRPMS/icedtea-web-1.3.2-0.6mdvmes5.2.src.rpm cb9cc575c4ac8aee8478942a33c79670 mes5/SRPMS/python-virtualenv-1.10.1-0.2mdvmes5.2.src.rpm fc60a524c85884c98fc273b0d61d1240 mes5/SRPMS/xulrunner-17.0.9-0.1mdvmes5.2.src.rpm Mandriva Enterprise Server 5/X86_64: 2b409ce014fd492d4985d4a7c5fb2b75 mes5/x86_64/firefox-17.0.9-0.1mdvmes5.2.x86_64.rpm 70a3ff95fd66719e0d823d6f6e3701a9 mes5/x86_64/firefox-af-17.0.9-0.1mdvmes5.2.x86_64.rpm 8de30d999f8402d7454ea76474dcdb70 mes5/x86_64/firefox-ar-17.0.9-0.1mdvmes5.2.x86_64.rpm 5f312b5ef25fd1c59d7c6641ba878012 mes5/x86_64/firefox-be-17.0.9-0.1mdvmes5.2.x86_64.rpm 19ffdfd55e5bd51e5bd79a0618fafbd9 mes5/x86_64/firefox-bg-17.0.9-0.1mdvmes5.2.x86_64.rpm 8c3d3488899e1462eab2a8b7d5d7ae7a mes5/x86_64/firefox-bn-17.0.9-0.1mdvmes5.2.x86_64.rpm ca9396e7968f7d2e43a53b5e1100e294 mes5/x86_64/firefox-ca-17.0.9-0.1mdvmes5.2.x86_64.rpm 5cab391d940d35b243a943a6cf99c4a6 mes5/x86_64/firefox-cs-17.0.9-0.1mdvmes5.2.x86_64.rpm 652ba658bece8b09de75a0d90dd029c1 mes5/x86_64/firefox-cy-17.0.9-0.1mdvmes5.2.x86_64.rpm fb99c516a7529b748e0e9cddbde4c4d3 mes5/x86_64/firefox-da-17.0.9-0.1mdvmes5.2.x86_64.rpm ac0c05b212588607e45a5060721f99fe mes5/x86_64/firefox-de-17.0.9-0.1mdvmes5.2.x86_64.rpm 821f043d7211bdbf56ad46030be2536d mes5/x86_64/firefox-devel-17.0.9-0.1mdvmes5.2.x86_64.rpm 1eee4d1157ba1d28c6f9241051d72de1 mes5/x86_64/firefox-el-17.0.9-0.1mdvmes5.2.x86_64.rpm d8dcd6129690d1bf2b9a0e265d39f439 mes5/x86_64/firefox-en_GB-17.0.9-0.1mdvmes5.2.x86_64.rpm d41b46bb03aa0fcd81c99c83e5f964ba mes5/x86_64/firefox-eo-17.0.9-0.1mdvmes5.2.x86_64.rpm b151c1f474ee3c333c80f0ca632267af mes5/x86_64/firefox-es_AR-17.0.9-0.1mdvmes5.2.x86_64.rpm cb4281c3218719cbe48dbfd33937f512 mes5/x86_64/firefox-es_ES-17.0.9-0.1mdvmes5.2.x86_64.rpm 0961919d112d9da93e11e753a18a61d6 mes5/x86_64/firefox-et-17.0.9-0.1mdvmes5.2.x86_64.rpm fa9b019c05d3ceca4c59bbde3756d3d0 mes5/x86_64/firefox-eu-17.0.9-0.1mdvmes5.2.x86_64.rpm 89fc86121f500ed628ae4b4fb0cfae8d mes5/x86_64/firefox-fi-17.0.9-0.1mdvmes5.2.x86_64.rpm 7f032c05391c603c0f2fadb9aa537c1a mes5/x86_64/firefox-fr-17.0.9-0.1mdvmes5.2.x86_64.rpm 937479044be6d4d3fcf870e61ca7b65d mes5/x86_64/firefox-fy-17.0.9-0.1mdvmes5.2.x86_64.rpm 5b7bb4cea94059d540c768bc6f5ec729 mes5/x86_64/firefox-ga_IE-17.0.9-0.1mdvmes5.2.x86_64.rpm 6119e46323ae5e8e66f5220d0d36180d mes5/x86_64/firefox-gl-17.0.9-0.1mdvmes5.2.x86_64.rpm 86e6b6ea8deabaf63a458ed767668706 mes5/x86_64/firefox-gu_IN-17.0.9-0.1mdvmes5.2.x86_64.rpm 672913c3acb5038aeced53ed6a5f7d2e mes5/x86_64/firefox-he-17.0.9-0.1mdvmes5.2.x86_64.rpm 656495d2c425bf21835c3c1aa9434d56 mes5/x86_64/firefox-hi-17.0.9-0.1mdvmes5.2.x86_64.rpm e31759f145d2c21afad67f4abf30a1cc mes5/x86_64/firefox-hu-17.0.9-0.1mdvmes5.2.x86_64.rpm cb6181197f9f7e8a0054ebee0ef1b440 mes5/x86_64/firefox-id-17.0.9-0.1mdvmes5.2.x86_64.rpm dcd5d30a10989b0128eaf8ae57379671 mes5/x86_64/firefox-is-17.0.9-0.1mdvmes5.2.x86_64.rpm 4e59f3de11228b4ecda2a207f9437409 mes5/x86_64/firefox-it-17.0.9-0.1mdvmes5.2.x86_64.rpm e7f07d31bab3e417ce0ca19826289999 mes5/x86_64/firefox-ja-17.0.9-0.1mdvmes5.2.x86_64.rpm 3ed95f5b7ea0c788c178b8c7062332be mes5/x86_64/firefox-kn-17.0.9-0.1mdvmes5.2.x86_64.rpm ab938f25d3ea74b9be833ccec7ece256 mes5/x86_64/firefox-ko-17.0.9-0.1mdvmes5.2.x86_64.rpm c1d331439b86c9a7baaef13bf7712550 mes5/x86_64/firefox-ku-17.0.9-0.1mdvmes5.2.x86_64.rpm c8755f535032d3ca98629d01e37f0b09 mes5/x86_64/firefox-lt-17.0.9-0.1mdvmes5.2.x86_64.rpm 8cbd673e497d775636ddf848504bee16 mes5/x86_64/firefox-lv-17.0.9-0.1mdvmes5.2.x86_64.rpm dc90939af0631d76ae89fa2ef51954ec mes5/x86_64/firefox-mk-17.0.9-0.1mdvmes5.2.x86_64.rpm f19ec5e831821901a8c974b3f1ce6911 mes5/x86_64/firefox-mr-17.0.9-0.1mdvmes5.2.x86_64.rpm 8c53ca9368d92ab26cdb0f36baea7772 mes5/x86_64/firefox-nb_NO-17.0.9-0.1mdvmes5.2.x86_64.rpm 15c9f7e259007e7d9f84a9ebeb55d032 mes5/x86_64/firefox-nl-17.0.9-0.1mdvmes5.2.x86_64.rpm f45e047e17e5fe27a4a4ab7a6d2c52cc mes5/x86_64/firefox-nn_NO-17.0.9-0.1mdvmes5.2.x86_64.rpm 0cc0cc5c5c50d8aad583aed3897ad67b mes5/x86_64/firefox-pa_IN-17.0.9-0.1mdvmes5.2.x86_64.rpm e40f00b8a440ab6d8dbab46693dffe64 mes5/x86_64/firefox-pl-17.0.9-0.1mdvmes5.2.x86_64.rpm 47dd3e8e8c8ce908a5ac13725bd43c53 mes5/x86_64/firefox-pt_BR-17.0.9-0.1mdvmes5.2.x86_64.rpm 4bad10a8b77c85e3c313fac5ed7bed0b mes5/x86_64/firefox-pt_PT-17.0.9-0.1mdvmes5.2.x86_64.rpm 3bf71bc984647749f6afe7bb153433ed mes5/x86_64/firefox-ro-17.0.9-0.1mdvmes5.2.x86_64.rpm 8271bec487fe9174daf9364718b86335 mes5/x86_64/firefox-ru-17.0.9-0.1mdvmes5.2.x86_64.rpm 1538915ec4aba9111e2b3aeadbbc5f8f mes5/x86_64/firefox-si-17.0.9-0.1mdvmes5.2.x86_64.rpm 84d423cbe6e4fe956007ccad78459a54 mes5/x86_64/firefox-sk-17.0.9-0.1mdvmes5.2.x86_64.rpm 2f56239378600a2d33fcc3e6d9cf6fd8 mes5/x86_64/firefox-sl-17.0.9-0.1mdvmes5.2.x86_64.rpm 6004e206eb33f3097388a68ce4488898 mes5/x86_64/firefox-sq-17.0.9-0.1mdvmes5.2.x86_64.rpm 3cc40ebc044a260cff98c74242baeefb mes5/x86_64/firefox-sr-17.0.9-0.1mdvmes5.2.x86_64.rpm 6560a2599e20f9e937832716486584dc mes5/x86_64/firefox-sv_SE-17.0.9-0.1mdvmes5.2.x86_64.rpm dabd7653aea4883d0a2bc3ad92090d39 mes5/x86_64/firefox-te-17.0.9-0.1mdvmes5.2.x86_64.rpm 173710d016875c66ea3bd2cba0f32fb4 mes5/x86_64/firefox-th-17.0.9-0.1mdvmes5.2.x86_64.rpm b9622fc24c7b0550af487dfd828b31f3 mes5/x86_64/firefox-tr-17.0.9-0.1mdvmes5.2.x86_64.rpm 2b878a4597de7d1a833b1fbb0e77ffdd mes5/x86_64/firefox-uk-17.0.9-0.1mdvmes5.2.x86_64.rpm 840b0f29941f7053758896f86b757dae mes5/x86_64/firefox-zh_CN-17.0.9-0.1mdvmes5.2.x86_64.rpm 3caff8cd2c7f92e62229ad53ae0efc14 mes5/x86_64/firefox-zh_TW-17.0.9-0.1mdvmes5.2.x86_64.rpm 948ce78d340580101fbb099428206969 mes5/x86_64/icedtea-web-1.3.2-0.6mdvmes5.2.x86_64.rpm 5c90f9d2043576eef4b55baeb421514a mes5/x86_64/icedtea-web-javadoc-1.3.2-0.6mdvmes5.2.x86_64.rpm d51a03bd529026be0faeddcca9ff10a6 mes5/x86_64/lib64xulrunner17.0.9-17.0.9-0.1mdvmes5.2.x86_64.rpm b21fd95e3ea0d5e4fc47904416631b0c mes5/x86_64/lib64xulrunner-devel-17.0.9-0.1mdvmes5.2.x86_64.rpm 72f5f54cb2c84d68f21943f3bfd6466d mes5/x86_64/python-virtualenv-1.10.1-0.2mdvmes5.2.noarch.rpm 04244fb1f2c725547cb6511b6c695ce4 mes5/x86_64/xulrunner-17.0.9-0.1mdvmes5.2.x86_64.rpm 3f6d270dda4c5827220e47dccbbc8089 mes5/SRPMS/firefox-17.0.9-0.1mdvmes5.2.src.rpm dfab37ed53f96ef09cdb798205969d78 mes5/SRPMS/firefox-l10n-17.0.9-0.1mdvmes5.2.src.rpm 951372413bc7abcfd4358a5afc398d17 mes5/SRPMS/icedtea-web-1.3.2-0.6mdvmes5.2.src.rpm cb9cc575c4ac8aee8478942a33c79670 mes5/SRPMS/python-virtualenv-1.10.1-0.2mdvmes5.2.src.rpm fc60a524c85884c98fc273b0d61d1240 mes5/SRPMS/xulrunner-17.0.9-0.1mdvmes5.2.src.rpm _______________________________________________________________________ To upgrade automatically use MandrivaUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. All packages are signed by Mandriva for security. You can obtain the GPG public key of the Mandriva Security Team by executing: gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98 You can view other update advisories for Mandriva Linux at: http://www.mandriva.com/en/support/security/advisories/ If you want to report vulnerabilities, please contact security_(at)_mandriva.com _______________________________________________________________________ Type Bits/KeyID Date User ID pub 1024D/22458A98 2000-07-10 Mandriva Security Team <security*mandriva.com> -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iD8DBQFSOVISmqjQ0CJFipgRAjJdAKCgMTMqdxPm6QUgBhZZq0+hbcy5ywCgyfoy AC6cf8RgtUKpZfyFAR8Tbxo= =vaHp -----END PGP SIGNATURE-----