Oval Definition:oval:org.opensuse.security:def:59271
Revision Date:2020-12-01Version:1
Title:Security update for MozillaFirefox (Moderate)
Description:

This update for MozillaFirefox fixes the following issues:

- Firefox Extended Support Release 78.1.0 ESR * Fixed: Various stability, functionality, and security fixes (bsc#1174538) * CVE-2020-15652: Potential leak of redirect targets when loading scripts in a worker * CVE-2020-6514: WebRTC data channel leaks internal address to peer * CVE-2020-15655: Extension APIs could be used to bypass Same-Origin Policy * CVE-2020-15653: Bypassing iframe sandbox when allowing popups * CVE-2020-6463: Use-after-free in ANGLE gl::Texture::onUnbindAsSamplerTexture * CVE-2020-15656: Type confusion for special arguments in IonMonkey * CVE-2020-15658: Overriding file type when saving to disk * CVE-2020-15657: DLL hijacking due to incorrect loading path * CVE-2020-15654: Custom cursor can overlay user interface * CVE-2020-15659: Memory safety bugs fixed in Firefox 79 and Firefox ESR 78.1
Family:unixClass:patch
Status:Reference(s):1036304
1045735
1049825
1065237
1070851
1076192
1079334
1088705
1090671
1091624
1092413
1096803
1099847
1100028
1101349
1102429
1119183
1119947
1121816
1121821
1129231
1131709
1152497
1154448
1154456
1154458
1154460
1154461
1154464
1155945
1157888
1158003
1158004
1158005
1158006
1158007
1159913
1162610
1165631
1170446
1170603
1171186
1173592
1173594
1173948
1173991
1174284
1174538
1174910
1174913
1175686
1178387
1178971
CVE-2009-1273
CVE-2016-10198
CVE-2016-10199
CVE-2016-9634
CVE-2016-9635
CVE-2016-9636
CVE-2016-9807
CVE-2016-9808
CVE-2016-9810
CVE-2017-5840
CVE-2017-5841
CVE-2017-5845
CVE-2017-9269
CVE-2018-12207
CVE-2018-16884
CVE-2018-7685
CVE-2019-11135
CVE-2019-18420
CVE-2019-18421
CVE-2019-18422
CVE-2019-18423
CVE-2019-18424
CVE-2019-18425
CVE-2019-19577
CVE-2019-19578
CVE-2019-19579
CVE-2019-19580
CVE-2019-19581
CVE-2019-19582
CVE-2019-19583
CVE-2019-5108
CVE-2019-6109
CVE-2019-6111
CVE-2020-12268
CVE-2020-12387
CVE-2020-12388
CVE-2020-12389
CVE-2020-12392
CVE-2020-12393
CVE-2020-12395
CVE-2020-14361
CVE-2020-14362
CVE-2020-15652
CVE-2020-15653
CVE-2020-15654
CVE-2020-15655
CVE-2020-15656
CVE-2020-15657
CVE-2020-15658
CVE-2020-15659
CVE-2020-15663
CVE-2020-15664
CVE-2020-15670
CVE-2020-1749
CVE-2020-25692
CVE-2020-6463
CVE-2020-6514
CVE-2020-6831
CVE-2020-8597
CVE-2020-8695
CVE-2020-8696
CVE-2020-8698
SUSE-SU-2018:2716-2
SUSE-SU-2019:0736-1
SUSE-SU-2019:1524-1
SUSE-SU-2019:3297-1
SUSE-SU-2020:1212-1
SUSE-SU-2020:1218-1
SUSE-SU-2020:2100-1
SUSE-SU-2020:2401-1
SUSE-SU-2020:2544-1
SUSE-SU-2020:3314-1
SUSE-SU-2020:3514-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • libpython3_6m1_0-3.6.5-lp150.1 is installed
  • OR python3-base-3.6.5-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • weechat-2.1-lp151.3.3 is installed
  • OR weechat-aspell-2.1-lp151.3.3 is installed
  • OR weechat-devel-2.1-lp151.3.3 is installed
  • OR weechat-guile-2.1-lp151.3.3 is installed
  • OR weechat-lang-2.1-lp151.3.3 is installed
  • OR weechat-lua-2.1-lp151.3.3 is installed
  • OR weechat-perl-2.1-lp151.3.3 is installed
  • OR weechat-python-2.1-lp151.3.3 is installed
  • OR weechat-ruby-2.1-lp151.3.3 is installed
  • OR weechat-tcl-2.1-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libzypp-16.17.20-27.52 is installed
  • OR zypper-1.13.45-18.33 is installed
  • OR zypper-log-1.13.45-18.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_120-92_70-default-10-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_20-10-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • MozillaFirefox-78.1.0-112.8 is installed
  • OR MozillaFirefox-devel-78.1.0-112.8 is installed
  • OR MozillaFirefox-translations-common-78.1.0-112.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • gstreamer-plugins-good-1.8.3-15 is installed
  • OR gstreamer-plugins-good-lang-1.8.3-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libecpg6-10.9-1.12 is installed
  • OR libpq5-10.9-1.12 is installed
  • OR libpq5-32bit-10.9-1.12 is installed
  • OR postgresql10-10.9-1.12 is installed
  • OR postgresql10-contrib-10.9-1.12 is installed
  • OR postgresql10-docs-10.9-1.12 is installed
  • OR postgresql10-libs-10.9-1.12 is installed
  • OR postgresql10-plperl-10.9-1.12 is installed
  • OR postgresql10-plpython-10.9-1.12 is installed
  • OR postgresql10-pltcl-10.9-1.12 is installed
  • OR postgresql10-server-10.9-1.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • python-PyYAML-5.1.2-26.12 is installed
  • OR python3-PyYAML-5.1.2-26.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • qemu-2.9.1-6.41 is installed
  • OR qemu-block-curl-2.9.1-6.41 is installed
  • OR qemu-block-iscsi-2.9.1-6.41 is installed
  • OR qemu-block-rbd-2.9.1-6.41 is installed
  • OR qemu-block-ssh-2.9.1-6.41 is installed
  • OR qemu-guest-agent-2.9.1-6.41 is installed
  • OR qemu-ipxe-1.0.0+-6.41 is installed
  • OR qemu-kvm-2.9.1-6.41 is installed
  • OR qemu-lang-2.9.1-6.41 is installed
  • OR qemu-seabios-1.10.2-6.41 is installed
  • OR qemu-sgabios-8-6.41 is installed
  • OR qemu-tools-2.9.1-6.41 is installed
  • OR qemu-vgabios-1.10.2-6.41 is installed
  • OR qemu-x86-2.9.1-6.41 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND libXvMC1-1.0.8-7 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • xorg-x11-server-7.6_1.18.3-76.29 is installed
  • OR xorg-x11-server-extra-7.6_1.18.3-76.29 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND python-Werkzeug-0.14.1-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • xen-4.9.4_06-3.59 is installed
  • OR xen-doc-html-4.9.4_06-3.59 is installed
  • OR xen-libs-4.9.4_06-3.59 is installed
  • OR xen-libs-32bit-4.9.4_06-3.59 is installed
  • OR xen-tools-4.9.4_06-3.59 is installed
  • OR xen-tools-domU-4.9.4_06-3.59 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND golang-github-prometheus-node_exporter-0.18.1-1.6 is installed
  • BACK