Revision Date: | 2020-12-01 | Version: | 1 |
Title: | Security update for MozillaFirefox (Important) |
Description: |
This update for MozillaFirefox fixes the following issues:
- Firefox Extended Support Release 78.5.0 ESR (bsc#1178824) * CVE-2020-26951: Parsing mismatches could confuse and bypass security sanitizer for chrome privileged code * CVE-2020-16012: Variable time processing of cross-origin images during drawImage calls * CVE-2020-26953: Fullscreen could be enabled without displaying the security UI * CVE-2020-26956: XSS through paste (manual and clipboard API) * CVE-2020-26958: Requests intercepted through ServiceWorkers lacked MIME type restrictions * CVE-2020-26959: Use-after-free in WebRequestService * CVE-2020-26960: Potential use-after-free in uses of nsTArray * CVE-2020-15999: Heap buffer overflow in freetype * CVE-2020-26961: DoH did not filter IPv4 mapped IP Addresses * CVE-2020-26965: Software keyboards may have remembered typed passwords * CVE-2020-26966: Single-word search queries were also broadcast to local network * CVE-2020-26968: Memory safety bugs fixed in Firefox 83 and Firefox ESR 78.5
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1033084 1033085 1033086 1033087 1033088 1033089 1033090 1106390 1107066 1107067 1111973 1112723 1112726 1123685 1125007 1131291 1144919 1146090 1146091 1146093 1146094 1146095 1146097 1146099 1146100 1150003 1150250 1163184 1164505 1165784 1173948 1175530 1176262 1178824 CVE-2017-5838 CVE-2017-7607 CVE-2017-7608 CVE-2017-7609 CVE-2017-7610 CVE-2017-7611 CVE-2017-7612 CVE-2017-7613 CVE-2018-16062 CVE-2018-16402 CVE-2018-16403 CVE-2018-18310 CVE-2018-18520 CVE-2018-18521 CVE-2019-1547 CVE-2019-1563 CVE-2019-20916 CVE-2019-7150 CVE-2019-7665 CVE-2019-9511 CVE-2019-9512 CVE-2019-9513 CVE-2019-9514 CVE-2019-9515 CVE-2019-9516 CVE-2019-9517 CVE-2019-9518 CVE-2020-10029 CVE-2020-15999 CVE-2020-16012 CVE-2020-24368 CVE-2020-26951 CVE-2020-26953 CVE-2020-26956 CVE-2020-26958 CVE-2020-26959 CVE-2020-26960 CVE-2020-26961 CVE-2020-26965 CVE-2020-26966 CVE-2020-26968 openSUSE-SU-2019:1590-1 openSUSE-SU-2019:2115-1 openSUSE-SU-2019:2269-1 openSUSE-SU-2020:0381-1 openSUSE-SU-2020:1042-1 openSUSE-SU-2020:1613-1 openSUSE-SU-2020:1674-1 SUSE-SU-2020:3548-1
|
Platform(s): | openSUSE Leap 15.1 openSUSE Leap 15.2 SUSE Linux Enterprise Module for Basesystem 15 SP1 SUSE Linux Enterprise Server 12 SP4-LTSS
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.1 is installed AND Package Information
elfutils-0.168-lp151.4.3 is installed
OR elfutils-lang-0.168-lp151.4.3 is installed
OR libasm-devel-0.168-lp151.4.3 is installed
OR libasm1-0.168-lp151.4.3 is installed
OR libasm1-32bit-0.168-lp151.4.3 is installed
OR libdw-devel-0.168-lp151.4.3 is installed
OR libdw1-0.168-lp151.4.3 is installed
OR libdw1-32bit-0.168-lp151.4.3 is installed
OR libebl-devel-0.168-lp151.4.3 is installed
OR libebl-plugins-0.168-lp151.4.3 is installed
OR libebl-plugins-32bit-0.168-lp151.4.3 is installed
OR libelf-devel-0.168-lp151.4.3 is installed
OR libelf-devel-32bit-0.168-lp151.4.3 is installed
OR libelf1-0.168-lp151.4.3 is installed
OR libelf1-32bit-0.168-lp151.4.3 is installed
|
Definition Synopsis |
openSUSE Leap 15.2 is installed
AND Package Information
icingacli-2.7.4-12 is installed
OR icingaweb2-2.7.4-12 is installed
OR icingaweb2-common-2.7.4-12 is installed
OR icingaweb2-vendor-HTMLPurifier-2.7.4-12 is installed
OR icingaweb2-vendor-JShrink-2.7.4-12 is installed
OR icingaweb2-vendor-Parsedown-2.7.4-12 is installed
OR icingaweb2-vendor-dompdf-2.7.4-12 is installed
OR icingaweb2-vendor-lessphp-2.7.4-12 is installed
OR icingaweb2-vendor-zf1-2.7.4-12 is installed
OR php-Icinga-2.7.4-12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
AND Package Information
gstreamer-plugins-good-1.12.5-1 is installed
OR gstreamer-plugins-good-lang-1.12.5-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4-LTSS is installed
AND Package Information
MozillaFirefox-78.5.0-112.36 is installed
OR MozillaFirefox-devel-78.5.0-112.36 is installed
OR MozillaFirefox-translations-common-78.5.0-112.36 is installed
|