Oval Definition:oval:org.opensuse.security:def:20177844
Revision Date:2022-06-30Version:1
Title:CVE-2017-7844
Description:

A combination of an external SVG image referenced on a page and the coloring of anchor links stored within this image can be used to determine which pages a user has in their history. This can allow a malicious website to query user history. Note: This issue only affects Firefox 57. Earlier releases are not affected. This vulnerability affects Firefox < 57.0.1.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-7844
Mitre CVE-2017-7844
SUSE CVE-2017-7844
Platform(s):openSUSE Leap 15.0
openSUSE Tumbleweed
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server for SAP Applications 12 SP2
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Software Development Kit 12 SP2
SUSE Linux Enterprise Software Development Kit 12 SP3
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND MozillaFirefox is not affected
  • Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • MozillaFirefox-60.0-lp150.2 is installed
  • AND MozillaFirefox is signed with openSUSE key
  • OR
  • MozillaFirefox-translations-common-60.0-lp150.2 is installed
  • AND MozillaFirefox-translations-common is signed with openSUSE key
  • OR
  • MozillaFirefox-translations-other-60.0-lp150.2 is installed
  • AND MozillaFirefox-translations-other is signed with openSUSE key
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND MozillaFirefox is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND MozillaFirefox is not affected
  • OR Package Information
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND MozillaFirefox is affected
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • MozillaFirefox-92.0-1.2 is installed
  • OR MozillaFirefox-branding-upstream-92.0-1.2 is installed
  • OR MozillaFirefox-devel-92.0-1.2 is installed
  • OR MozillaFirefox-translations-common-92.0-1.2 is installed
  • OR MozillaFirefox-translations-other-92.0-1.2 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • OR SUSE Linux Enterprise Server 12 SP2 is installed
  • OR SUSE Linux Enterprise Server 12 SP3 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP2 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
  • AND MozillaFirefox is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • OR SUSE Linux Enterprise Server 12 SP3 is installed
  • AND MozillaFirefox is not affected
  • BACK