Oval Definition:oval:org.opensuse.security:def:68603
Revision Date:2020-12-01Version:1
Title:Security update for MozillaFirefox (Important)
Description:

This update for MozillaFirefox to version 68.7.0 ESR fixes the following issues:

- CVE-2020-6821: Uninitialized memory could be read when using the WebGL copyTexSubImage method (bsc#1168874). - CVE-2020-6822: Fixed out of bounds write in GMPDecodeData when processing large images (bsc#1168874). - CVE-2020-6825: Fixed Memory safety bugs (bsc#1168874). - CVE-2020-6827: Custom Tabs could have the URI spoofed (bsc#1168874). - CVE-2020-6828: Preference overwrite via crafted Intent (bsc#1168874).
Family:unixClass:patch
Status:Reference(s):1134598
1168874
CVE-2012-5784
CVE-2014-3596
CVE-2020-6821
CVE-2020-6822
CVE-2020-6825
CVE-2020-6827
CVE-2020-6828
SUSE-SU-2019:1373-2
SUSE-SU-2020:0971-1
Platform(s):SUSE Linux Enterprise Module for Desktop Applications 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • axis-1.4-5.8 is installed
  • OR axis-manual-1.4-5.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
  • AND Package Information
  • MozillaFirefox-68.7.0-3.84 is installed
  • OR MozillaFirefox-devel-68.7.0-3.84 is installed
  • OR MozillaFirefox-translations-common-68.7.0-3.84 is installed
  • OR MozillaFirefox-translations-other-68.7.0-3.84 is installed
  • BACK