Oval Definition:oval:org.opensuse.security:def:55282
Revision Date:2021-12-12Version:1
Title:Security update for MozillaFirefox (Important)
Description:

This update for MozillaFirefox fixes the following issues: Update to Extended Support Release 91.4.0 (bsc#1193485): - CVE-2021-43536: URL leakage when navigating while executing asynchronous function - CVE-2021-43537: Heap buffer overflow when using structured clone - CVE-2021-43538: Missing fullscreen and pointer lock notification when requesting both - CVE-2021-43539: GC rooting failure when calling wasm instance methods - CVE-2021-43541: External protocol handler parameters were unescaped - CVE-2021-43542: XMLHttpRequest error codes could have leaked the existence of an external protocol handler - CVE-2021-43543: Bypass of CSP sandbox directive when embedding - CVE-2021-43545: Denial of Service when using the Location API in a loop - CVE-2021-43546: Cursor spoofing could overlay user interface when native cursor is zoomed - Memory safety bugs fixed in Firefox 95 and Firefox ESR 91.4 - Removed x-scheme-handler/ftp from MozillaFirefox.desktop (bsc#1193321)
Family:unixClass:patch
Status:Reference(s):1009994
1010756
1010757
1010766
1010774
1010782
1010968
1010975
1046554
1046555
1047958
1077355
1080918
1080951
1088420
1104789
1110018
1113534
1113652
1119553
1119554
1119555
1119556
1119557
1119558
1121826
1193321
1193485
851021
851426
865475
871148
883209
891489
948902
958963
960155
964225
973340
981654
984684
984808
984831
984837
984842
987351
987895
988651
989363
989721
989722
989723
989725
989726
989727
989728
989729
989730
989731
989732
989733
989734
992533
CVE-2008-1227
CVE-2013-1984
CVE-2013-1995
CVE-2013-1998
CVE-2013-4579
CVE-2014-2672
CVE-2014-3158
CVE-2015-1142857
CVE-2015-1191
CVE-2015-7552
CVE-2015-8781
CVE-2015-8782
CVE-2015-8783
CVE-2016-10713
CVE-2016-3186
CVE-2016-3458
CVE-2016-3485
CVE-2016-3498
CVE-2016-3500
CVE-2016-3503
CVE-2016-3508
CVE-2016-3511
CVE-2016-3550
CVE-2016-3552
CVE-2016-3587
CVE-2016-3598
CVE-2016-3606
CVE-2016-3610
CVE-2016-5314
CVE-2016-5316
CVE-2016-5317
CVE-2016-5320
CVE-2016-5875
CVE-2016-6210
CVE-2016-6515
CVE-2016-8610
CVE-2016-9262
CVE-2016-9388
CVE-2016-9389
CVE-2016-9390
CVE-2016-9391
CVE-2016-9392
CVE-2016-9393
CVE-2016-9394
CVE-2017-1000050
CVE-2017-3142
CVE-2017-3143
CVE-2018-0734
CVE-2018-1000156
CVE-2018-4437
CVE-2018-4438
CVE-2018-4441
CVE-2018-4442
CVE-2018-4443
CVE-2018-4464
CVE-2018-5407
CVE-2018-6951
CVE-2019-6133
CVE-2021-43536
CVE-2021-43537
CVE-2021-43538
CVE-2021-43539
CVE-2021-43541
CVE-2021-43542
CVE-2021-43543
CVE-2021-43545
CVE-2021-43546
SUSE-SU-2016:0282-1
SUSE-SU-2016:2012-1
SUSE-SU-2016:2271-1
SUSE-SU-2016:2280-1
SUSE-SU-2017:1736-1
SUSE-SU-2018:0339-1
SUSE-SU-2018:0674-1
SUSE-SU-2018:1128-1
SUSE-SU-2018:4068-1
SUSE-SU-2019:0146-1
SUSE-SU-2019:2035-1
SUSE-SU-2021:4000-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • flatpak-0.10.4-lp150.2 is installed
  • OR libflatpak0-0.10.4-lp150.2 is installed
  • OR typelib-1_0-Flatpak-1_0-0.10.4-lp150.2 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libsass-3.6.1-lp151.3.3 is installed
  • OR libsass-3_6_1-1-3.6.1-lp151.3.3 is installed
  • OR libsass-devel-3.6.1-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • compat-wireless-kmp-default-3.13_3.0.101_0.31-0.9 is installed
  • OR compat-wireless-kmp-pae-3.13_3.0.101_0.31-0.9 is installed
  • OR compat-wireless-kmp-xen-3.13_3.0.101_0.31-0.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • gtk2-2.18.9-0.39 is installed
  • OR gtk2-32bit-2.18.9-0.39 is installed
  • OR gtk2-lang-2.18.9-0.39 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • jasper-1.900.14-195.5 is installed
  • OR libjasper1-1.900.14-195.5 is installed
  • OR libjasper1-32bit-1.900.14-195.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • libsilc-1_1-2-1.1.10-24 is installed
  • OR libsilcclient-1_1-3-1.1.10-24 is installed
  • OR silc-toolkit-1.1.10-24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libXi6-1.7.4-9 is installed
  • OR libXi6-32bit-1.7.4-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_67-60_64_21-default-9-2 is installed
  • OR kgraft-patch-3_12_67-60_64_21-xen-9-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_10-9-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • MozillaFirefox-45.4.0esr-81 is installed
  • OR MozillaFirefox-translations-45.4.0esr-81 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • MozillaFirefox-91.4.0-112.83.1 is installed
  • OR MozillaFirefox-devel-91.4.0-112.83.1 is installed
  • OR MozillaFirefox-translations-common-91.4.0-112.83.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libpython2_7-1_0-2.7.13-28.21 is installed
  • OR libpython2_7-1_0-32bit-2.7.13-28.21 is installed
  • OR python-2.7.13-28.21 is installed
  • OR python-32bit-2.7.13-28.21 is installed
  • OR python-base-2.7.13-28.21 is installed
  • OR python-base-32bit-2.7.13-28.21 is installed
  • OR python-curses-2.7.13-28.21 is installed
  • OR python-demo-2.7.13-28.21 is installed
  • OR python-doc-2.7.13-28.21 is installed
  • OR python-doc-pdf-2.7.13-28.21 is installed
  • OR python-gdbm-2.7.13-28.21 is installed
  • OR python-idle-2.7.13-28.21 is installed
  • OR python-tk-2.7.13-28.21 is installed
  • OR python-xml-2.7.13-28.21 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_121-92_80-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_22-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • gv-3.7.4-1 is installed
  • OR wdiff-1.2.1-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libXvnc1-1.6.0-18.28 is installed
  • OR tigervnc-1.6.0-18.28 is installed
  • OR xorg-x11-Xvnc-1.6.0-18.28 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_176-94_88-default-5-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_24-5-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_162-94_72-default-5-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_22-5-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND ucode-intel-20180807-13.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • bzip2-1.0.6-29 is installed
  • OR bzip2-doc-1.0.6-29 is installed
  • OR libbz2-1-1.0.6-29 is installed
  • OR libbz2-1-32bit-1.0.6-29 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • bind-9.9.9P1-62 is installed
  • OR bind-chrootenv-9.9.9P1-62 is installed
  • OR bind-devel-9.9.9P1-62 is installed
  • OR bind-doc-9.9.9P1-62 is installed
  • OR bind-libs-9.9.9P1-62 is installed
  • OR bind-libs-32bit-9.9.9P1-62 is installed
  • OR bind-utils-9.9.9P1-62 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • openslp-2.0.0-18.17 is installed
  • OR openslp-32bit-2.0.0-18.17 is installed
  • OR openslp-server-2.0.0-18.17 is installed
  • BACK