Mozilla 1.7.8 is going to be released, it fixes a number of issues. Upstream is fixing the following bugzilla.mozilla.org bugs: 292691 (CAN-2005-1476 CAN-2005-1477) Potential for full compromise. It seems we're not very affected. impact=moderate 290908 Javascript can gain chrome access impact=important 290949 link tag can give javascript chrome access impact=moderate
These issues also affect RHEL2.1 and RHEL3
An advisory has been issued which should help the problem described in this bug report. This report is therefore being closed with a resolution of ERRATA. For more information on the solution and/or where to find the updated files, please follow the link below. You may reopen this bug report if the solution does not work for you. http://rhn.redhat.com/errata/RHSA-2005-435.html