Oval Definition:
oval:org.opensuse.security:def:202123974
Revision Date
:
2022-06-30
Version
:
1
Title
:
CVE-2021-23974
Description
:
The DOMParser API did not properly process '
' elements for escaping. This could be used as an mXSS vector to bypass an HTML Sanitizer. This vulnerability affects Firefox < 86.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
Mitre CVE-2021-23974
SUSE CVE-2021-23974
Platform(s)
:
openSUSE Tumbleweed
Product(s)
:
Definition Synopsis
openSUSE Tumbleweed is installed
AND
Package Information
MozillaFirefox-92.0-1.2 is installed
OR
MozillaFirefox-branding-upstream-92.0-1.2 is installed
OR
MozillaFirefox-devel-92.0-1.2 is installed
OR
MozillaFirefox-translations-common-92.0-1.2 is installed
OR
MozillaFirefox-translations-other-92.0-1.2 is installed
BACK