Revision Date: | 2020-09-25 | Version: | 1 |
Title: | Security update for MozillaFirefox (Important) |
Description: |
This update for MozillaFirefox fixes the following issues:
- Firefox was updated to 78.3.0 ESR (bsc#1176756, MFSA 2020-43) - CVE-2020-15677: Download origin spoofing via redirect - CVE-2020-15676: Fixed an XSS when pasting attacker-controlled data into a contenteditable element - CVE-2020-15678: When recursing through layers while scrolling, an iterator may have become invalid, resulting in a potential use-after-free scenario - CVE-2020-15673: Fixed memory safety bugs - Enhance fix for wayland-detection (bsc#1174420) - Attempt to fix langpack-parallelization by introducing separate obj-dirs for each lang (bsc#1173986, bsc#1167976)
- Firefox was updated to 78.2.0 ESR (bsc#1175686, MFSA 2020-38) - CVE-2020-15663: Downgrade attack on the Mozilla Maintenance Service could have resulted in escalation of privilege - CVE-2020-15664: Attacker-induced prompt for extension installation - CVE-2020-15670: Fixed memory safety bugs fixed in Firefox 80 and Firefox ESR 78.2
- Fixed Firefox tab crash in FIPS mode (bsc#1174284). - Fixed broken translation-loading (bsc#1173991) - allow addon sideloading - mark signatures for langpacks non-mandatory - do not autodisable user profile scopes - Google API key is not usable for geolocation service any more
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1167976 1173986 1173991 1174284 1174420 1175686 1176756 CVE-2020-15663 CVE-2020-15664 CVE-2020-15670 CVE-2020-15673 CVE-2020-15676 CVE-2020-15677 CVE-2020-15678 SUSE-SU-2020:2749-1
|
Platform(s): | SUSE Linux Enterprise Desktop 15 SP2 SUSE Linux Enterprise High Performance Computing 15 SP2 SUSE Linux Enterprise Module for Desktop Applications 15 SP2 SUSE Linux Enterprise Server 15 SP2 SUSE Linux Enterprise Server for SAP Applications 15 SP2 SUSE Linux Enterprise Storage 7 SUSE Manager Proxy 4.1 SUSE Manager Server 4.1
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Module for Desktop Applications 15 SP2 is installed AND Package Information
MozillaFirefox-78.3.0-8.6.1 is installed
OR MozillaFirefox-devel-78.3.0-8.6.1 is installed
OR MozillaFirefox-translations-common-78.3.0-8.6.1 is installed
OR MozillaFirefox-translations-other-78.3.0-8.6.1 is installed
|