Oval Definition:oval:org.opensuse.security:def:66707
Revision Date:2020-12-21Version:1
Title:Security update for MozillaFirefox (Critical)
Description:

This update for MozillaFirefox fixes the following issues:

- Firefox Extended Support Release 78.6.0 ESR * Fixed: Various stability, functionality, and security fixes MFSA 2020-55 (bsc#1180039) * CVE-2020-16042 (bmo#1679003) Operations on a BigInt could have caused uninitialized memory to be exposed * CVE-2020-26971 (bmo#1663466) Heap buffer overflow in WebGL * CVE-2020-26973 (bmo#1680084) CSS Sanitizer performed incorrect sanitization * CVE-2020-26974 (bmo#1681022) Incorrect cast of StyleGenericFlexBasis resulted in a heap use-after-free * CVE-2020-26978 (bmo#1677047) Internal network hosts could have been probed by a malicious webpage * CVE-2020-35111 (bmo#1657916) The proxy.onRequest API did not catch view-source URLs * CVE-2020-35112 (bmo#1661365) Opening an extension-less download may have inadvertently launched an executable instead * CVE-2020-35113 (bmo#1664831, bmo#1673589) Memory safety bugs fixed in Firefox 84 and Firefox ESR 78.6
Family:unixClass:patch
Status:Reference(s):1180039
CVE-2018-1000622
CVE-2019-12083
CVE-2019-14822
CVE-2020-16042
CVE-2020-26971
CVE-2020-26973
CVE-2020-26974
CVE-2020-26978
CVE-2020-35111
CVE-2020-35112
CVE-2020-35113
Platform(s):SUSE Linux Enterprise Module for Desktop Applications 15 SP2
SUSE Linux Enterprise Module for Development Tools 15 SP2
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP2 is installed
  • AND Package Information
  • ibus-1.5.22-2 is installed
  • OR ibus-devel-1.5.22-2 is installed
  • OR ibus-dict-emoji-1.5.22-2 is installed
  • OR ibus-gtk-1.5.22-2 is installed
  • OR ibus-gtk3-1.5.22-2 is installed
  • OR ibus-lang-1.5.22-2 is installed
  • OR libibus-1_0-5-1.5.22-2 is installed
  • OR typelib-1_0-IBus-1_0-1.5.22-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 SP2 is installed
  • AND Package Information
  • cargo-1.36.0-7 is installed
  • OR clippy-1.36.0-7 is installed
  • OR rls-1.36.0-7 is installed
  • OR rust-1.36.0-7 is installed
  • OR rust-analysis-1.36.0-7 is installed
  • OR rust-src-1.36.0-7 is installed
  • OR rust-std-static-1.36.0-7 is installed
  • OR rustfmt-1.36.0-7 is installed
  • BACK