On December 13, Canonical published in a security notice details about a unity-firefox-extension vulnerability for its Ubuntu 12.10 (Quantal Quetzal) operating system.
According to Canonical, unity-firefox-extension (Firefox extension for Unity Integration) could have been made to expose sensitive information over the network.
It was discovered that unity-firefox-extension bypassed the same orig
On November 21, Canonical published details about UnityWebapps vulnerabilities for its Ubuntu 12.10 (Quantal Quetzal) operating system.
According to Canonical, the UnityWebapps library could have been made to crash or to run programs as users log in, if it opened a malicious website.
It was discovered that libunity-webapps improperly handled certain hash tables.
Canonical published in a security notice details about Firefox vulnerabilities for its Ubuntu 12.04 LTS, Ubuntu 11.10, Ubuntu 11.04, and Ubuntu 10.04 LTS operating systems.
According to Canonical, several security issues were fixed in Mozilla Firefox.
On October 26, in a security notice Canonical published details about Firefox vulnerabilities for its Ubuntu 12.10, Ubuntu 12.04 LTS, Ubuntu 11.10, Ubuntu 11.04, and Ubuntu 10.04 LTS operating systems.According to Canonical, several flaws were found in Firefox that allowed a remote attacker to conduct cross-site scripting (S) attacks.
On November 5, Canonical published details about MySQL vulnerabilities for its Ubuntu 12.04 LTS, Ubuntu 11.10, and Ubuntu 10.04 LTS operating systems.
According to Canonical, libproxy could be made to crash or run programs, if it received specially crafted network traffic.
It was discovered that libproxy incorrectly handled certain PAC files.
On March 6, Canonical published details about OpenJDK 6 vulnerabilities, in a security notice, for its Ubuntu 12.04 LTS, Ubuntu 11.10, and Ubuntu 10.04 LTS operating systems.
According to Canonical, OpenJDK could be made to crash or run programs as you login if it opened a specially crafted file.
For example, it was discovered that OpenJDK did not properly validate certain types of images.
On November 7, in a security notice, Canonical published details about an Icedtea-Web vulnerability for its Ubuntu 12.10, Ubuntu 12.04 LTS, Ubuntu 11.10, Ubuntu 11.04, and Ubuntu 10.04 LTS operating systems.
According to Canonical, the Icedtea-Web plugin could have been made to crash or run programs as your login if it opened a specially crafted web page.
It was discovered that if a user was tri
On February 12, Canonical published in a security notice details about a curl vulnerability for its Ubuntu 12.10 (Quantal Quetzal) operating system.
According to Canonical, curl could be made to crash or run programs, if it opened a malicious URL.
It was discovered that curl incorrectly handled SASL authentication when communicating over POP3, SMTP or IMAP.
On November 21, Canonical published details about Firefox vulnerabilities for its Ubuntu 12.10, Ubuntu 12.04 LTS, Ubuntu 11.10, and Ubuntu 10.04 LTS operating systems, providing a much needed update to version 17.0.According to Canonical, multiple security issues were fixed in Mozilla Firefox.