Oval Definition:oval:org.opensuse.security:def:60930
Revision Date:2020-12-01Version:1
Title:Security update for MozillaFirefox (Important)
Description:

This update for MozillaFirefox fixes the following issues:

Mozilla Firefox was updated to 68.3esr (MFSA 2019-37 bsc#1158328) Security issues fixed:

- CVE-2019-17008: Fixed a use-after-free in worker destruction (bmo#1546331) - CVE-2019-13722: Fixed a stack corruption due to incorrect number of arguments in WebRTC code (bmo#1580156) - CVE-2019-11745: Fixed an out of bounds write in NSS when encrypting with a block cipher (bmo#1586176) - CVE-2019-17009: Fixed an issue where updater temporary files accessible to unprivileged processes (bmo#1510494) - CVE-2019-17010: Fixed a use-after-free when performing device orientation checks (bmo#1581084) - CVE-2019-17005: Fixed a buffer overflow in plain text serializer (bmo#1584170) - CVE-2019-17011: Fixed a use-after-free when retrieving a document in antitracking (bmo#1591334) - CVE-2019-17012: Fixed multiple memmory issues (bmo#1449736, bmo#1533957, bmo#1560667,bmo#1567209, bmo#1580288, bmo#1585760, bmo#1592502)
Family:unixClass:patch
Status:Reference(s):1021578
1054724
1055587
1056291
1056334
1057378
1057585
1057966
1062069
1062942
1063122
1074014
1076861
1079150
1087416
1092885
1094325
1094480
1094725
1095556
1099257
1108606
1111622
1111634
1111635
1113094
1113672
1121626
1122668
1125113
1126230
1127820
1127821
1127822
1136082
1136085
1146608
1153238
1155199
1157607
1158328
1159646
1159723
1159729
1161096
1162553
1163019
1164825
1166844
1171670
1171921
1171928
1171960
1171961
1171963
1173902
1173994
1174543
1177613
959329
983268
CVE-2016-5102
CVE-2017-10911
CVE-2017-12809
CVE-2017-13672
CVE-2017-13711
CVE-2017-14167
CVE-2017-15038
CVE-2017-15268
CVE-2017-15289
CVE-2018-1000807
CVE-2018-1000808
CVE-2018-12178
CVE-2018-12180
CVE-2018-12900
CVE-2018-17000
CVE-2018-18074
CVE-2018-18557
CVE-2018-18661
CVE-2018-3630
CVE-2018-3639
CVE-2019-0221
CVE-2019-11745
CVE-2019-12418
CVE-2019-13722
CVE-2019-14866
CVE-2019-14973
CVE-2019-16935
CVE-2019-17005
CVE-2019-17008
CVE-2019-17009
CVE-2019-17010
CVE-2019-17011
CVE-2019-17012
CVE-2019-17563
CVE-2019-17569
CVE-2019-17571
CVE-2019-6128
CVE-2019-7663
CVE-2020-10531
CVE-2020-10753
CVE-2020-14318
CVE-2020-14323
CVE-2020-14383
CVE-2020-8608
CVE-2020-9484
SUSE-SU-2017:2924-1
SUSE-SU-2018:2304-1
SUSE-SU-2018:4063-1
SUSE-SU-2019:0579-1
SUSE-SU-2019:3347-1
SUSE-SU-2020:0054-1
SUSE-SU-2020:0555-1
SUSE-SU-2020:1498-1
SUSE-SU-2020:1748-1
SUSE-SU-2020:2171-1
SUSE-SU-2020:3093-1
Platform(s):openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND clementine-1.3.1-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • qemu-2.9.1-6.6 is installed
  • OR qemu-arm-2.9.1-6.6 is installed
  • OR qemu-block-curl-2.9.1-6.6 is installed
  • OR qemu-block-iscsi-2.9.1-6.6 is installed
  • OR qemu-block-rbd-2.9.1-6.6 is installed
  • OR qemu-block-ssh-2.9.1-6.6 is installed
  • OR qemu-guest-agent-2.9.1-6.6 is installed
  • OR qemu-ipxe-1.0.0-6.6 is installed
  • OR qemu-kvm-2.9.1-6.6 is installed
  • OR qemu-lang-2.9.1-6.6 is installed
  • OR qemu-ppc-2.9.1-6.6 is installed
  • OR qemu-s390-2.9.1-6.6 is installed
  • OR qemu-seabios-1.10.2-6.6 is installed
  • OR qemu-sgabios-8-6.6 is installed
  • OR qemu-tools-2.9.1-6.6 is installed
  • OR qemu-vgabios-1.10.2-6.6 is installed
  • OR qemu-x86-2.9.1-6.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • ceph-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR ceph-common-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR libcephfs2-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR librados2-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR libradosstriper1-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR librbd1-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR librgw2-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR python-cephfs-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR python-rados-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR python-rbd-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR python-rgw-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • icu-52.1-8.10 is installed
  • OR libicu-doc-52.1-8.10 is installed
  • OR libicu52_1-52.1-8.10 is installed
  • OR libicu52_1-32bit-52.1-8.10 is installed
  • OR libicu52_1-data-52.1-8.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND log4j-1.2.15-126.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libtiff5-4.0.9-44.27 is installed
  • OR libtiff5-32bit-4.0.9-44.27 is installed
  • OR tiff-4.0.9-44.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • ecryptfs-utils-103-8.3 is installed
  • OR ecryptfs-utils-32bit-103-8.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND xrdp-0.9.0~git.1456906198.f422461-21.27 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • MozillaFirefox-68.3.0-109.98 is installed
  • OR MozillaFirefox-translations-common-68.3.0-109.98 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • grub2-2.02-12.39 is installed
  • OR grub2-i386-pc-2.02-12.39 is installed
  • OR grub2-snapper-plugin-2.02-12.39 is installed
  • OR grub2-systemd-sleep-plugin-2.02-12.39 is installed
  • OR grub2-x86_64-efi-2.02-12.39 is installed
  • OR grub2-x86_64-xen-2.02-12.39 is installed
  • BACK