Revision Date: | 2021-04-29 | Version: | 1 |
Title: | Security update for MozillaFirefox (Important) |
Description: |
This update for MozillaFirefox fixes the following issues:
- MozillaFirefox was updated to 78.10.0 ESR (bsc#1184960) * CVE-2021-23994: Out of bound write due to lazy initialization * CVE-2021-23995: Use-after-free in Responsive Design Mode * CVE-2021-23998: Secure Lock icon could have been spoofed * CVE-2021-23961: More internal network hosts could have been probed by a malicious webpage * CVE-2021-23999: Blob URLs may have been granted additional privileges * CVE-2021-24002: Arbitrary FTP command execution on FTP servers using an encoded URL * CVE-2021-29945: Incorrect size computation in WebAssembly JIT could lead to null-reads * CVE-2021-29946: Port blocking could be bypassed
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1184960 CVE-2021-23961 CVE-2021-23994 CVE-2021-23995 CVE-2021-23998 CVE-2021-23999 CVE-2021-24002 CVE-2021-29945 CVE-2021-29946 SUSE-SU-2021:1433-1
|
Platform(s): | SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS is installed AND Package Information
MozillaFirefox-78.10.0-3.139.1 is installed
OR MozillaFirefox-devel-78.10.0-3.139.1 is installed
OR MozillaFirefox-translations-common-78.10.0-3.139.1 is installed
OR MozillaFirefox-translations-other-78.10.0-3.139.1 is installed
|