Oval Definition:oval:com.redhat.rhsa:def:20171440
Revision Date:2017-06-14Version:638
Title:RHSA-2017:1440: firefox security update (Critical)
Description:Mozilla Firefox is an open source web browser.

This update upgrades Firefox to version 52.2.0 ESR.

Security Fix(es):

  • Multiple flaws were found in the processing of malformed web content. A web page containing malicious content could cause Firefox to crash or, potentially, execute arbitrary code with the privileges of the user running Firefox. (CVE-2017-5470, CVE-2017-5472, CVE-2017-7749, CVE-2017-7751, CVE-2017-7756, CVE-2017-7771, CVE-2017-7772, CVE-2017-7773, CVE-2017-7774, CVE-2017-7775, CVE-2017-7776, CVE-2017-7777, CVE-2017-7778, CVE-2017-7750, CVE-2017-7752, CVE-2017-7754, CVE-2017-7757, CVE-2017-7758, CVE-2017-7764)

    Red Hat would like to thank the Mozilla project for reporting these issues. Upstream acknowledges Nils, Nicolas Trippar of Zimperium zLabs, Mats Palmgren, Philipp, Masayuki Nakano, Christian Holler, Andrew McCreight, Gary Kwong, André Bargull, Carsten Book, Jesse Schwartzentruber, Julian Hector, Marcia Knous, Ronald Crane, Samuel Erb, Holger Fuhrmannek, Tyson Smith, Abhishek Arya, and F. Alonso (revskills) as the original reporters.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2017-5470
    CVE-2017-5472
    CVE-2017-7749
    CVE-2017-7750
    CVE-2017-7751
    CVE-2017-7752
    CVE-2017-7754
    CVE-2017-7756
    CVE-2017-7757
    CVE-2017-7758
    CVE-2017-7764
    CVE-2017-7771
    CVE-2017-7772
    CVE-2017-7773
    CVE-2017-7774
    CVE-2017-7775
    CVE-2017-7776
    CVE-2017-7777
    CVE-2017-7778
    RHSA-2017:1440
    RHSA-2017:1440-00
    RHSA-2017:1440-01
    Platform(s):Red Hat Enterprise Linux 6
    Red Hat Enterprise Linux 7
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND firefox is earlier than 0:52.2.0-1.el7_3
  • AND firefox is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 6 is installed
  • AND firefox is earlier than 0:52.2.0-1.el6_9
  • AND firefox is signed with Red Hat redhatrelease2 key
  • BACK