Vulnerability Name:

CVE-2014-1538 (CCN-93709)

Assigned:2014-06-10
Published:2014-06-10
Updated:2017-12-28
Summary:Use-after-free vulnerability in the nsTextEditRules::CreateMozBR function in Mozilla Firefox before 30.0, Firefox ESR 24.x before 24.6, and Thunderbird before 24.6 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.
CVSS v3 Severity:10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
7.4 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
9.3 High (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C)
6.9 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
6.8 Medium (REDHAT CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P)
5.0 Medium (REDHAT Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-Other
CWE-416
CWE-119
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2014-1538

Source: CONFIRM
Type: UNKNOWN
http://linux.oracle.com/errata/ELSA-2014-0741.html

Source: CONFIRM
Type: UNKNOWN
http://linux.oracle.com/errata/ELSA-2014-0742.html

Source: SUSE
Type: UNKNOWN
openSUSE-SU-2014:0797

Source: SUSE
Type: UNKNOWN
SUSE-SU-2014:0824

Source: SUSE
Type: UNKNOWN
openSUSE-SU-2014:0819

Source: SUSE
Type: UNKNOWN
openSUSE-SU-2014:0855

Source: SUSE
Type: UNKNOWN
openSUSE-SU-2014:0858

Source: CCN
Type: RHSA-2014-0741
Critical: firefox security update

Source: REDHAT
Type: UNKNOWN
RHSA-2014:0741

Source: CCN
Type: RHSA-2014-0742
Important: thunderbird security update

Source: REDHAT
Type: UNKNOWN
RHSA-2014:0742

Source: SECUNIA
Type: UNKNOWN
58984

Source: SECUNIA
Type: UNKNOWN
59052

Source: SECUNIA
Type: UNKNOWN
59149

Source: SECUNIA
Type: UNKNOWN
59150

Source: SECUNIA
Type: UNKNOWN
59165

Source: SECUNIA
Type: UNKNOWN
59169

Source: SECUNIA
Type: UNKNOWN
59170

Source: SECUNIA
Type: UNKNOWN
59171

Source: SECUNIA
Type: UNKNOWN
59229

Source: SECUNIA
Type: UNKNOWN
59275

Source: SECUNIA
Type: UNKNOWN
59328

Source: SECUNIA
Type: UNKNOWN
59377

Source: SECUNIA
Type: UNKNOWN
59387

Source: SECUNIA
Type: UNKNOWN
59425

Source: SECUNIA
Type: UNKNOWN
59486

Source: SECUNIA
Type: UNKNOWN
59866

Source: DEBIAN
Type: UNKNOWN
DSA-2955

Source: DEBIAN
Type: UNKNOWN
DSA-2960

Source: CONFIRM
Type: Vendor Advisory
http://www.mozilla.org/security/announce/2014/mfsa2014-49.html

Source: CONFIRM
Type: UNKNOWN
http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html

Source: BID
Type: UNKNOWN
67976

Source: CCN
Type: BID-67976
Mozilla Firefox/Thunderbird CVE-2014-1538 Memory Corruption Vulnerability

Source: SECTRACK
Type: UNKNOWN
1030386

Source: SECTRACK
Type: UNKNOWN
1030388

Source: UBUNTU
Type: UNKNOWN
USN-2243-1

Source: UBUNTU
Type: UNKNOWN
USN-2250-1

Source: CONFIRM
Type: UNKNOWN
https://bugzilla.mozilla.org/show_bug.cgi?id=1005584

Source: CONFIRM
Type: UNKNOWN
https://bugzilla.redhat.com/show_bug.cgi?id=1107421

Source: XF
Type: UNKNOWN
firefox-cve20141538-code-exec(93709)

Source: GENTOO
Type: UNKNOWN
GLSA-201504-01

Source: CCN
Type: MFSA 2014-49
Use-after-free and out of bounds issues found using Address Sanitizer

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2014-1538

Vulnerable Configuration:Configuration 1:
  • cpe:/a:mozilla:firefox:*:*:*:*:*:*:*:* (Version <= 29.0.1)

  • Configuration 2:
  • cpe:/a:mozilla:firefox_esr:24.0:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:firefox_esr:24.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:firefox_esr:24.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:firefox_esr:24.1.0:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:firefox_esr:24.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:firefox_esr:24.2:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:firefox_esr:24.3:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:firefox_esr:24.4:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:firefox_esr:24.5:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/a:mozilla:thunderbird:24.0:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:thunderbird:24.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:thunderbird:24.1:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:thunderbird:24.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:thunderbird:24.2:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:thunderbird:24.3:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:thunderbird:24.4:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:thunderbird:*:*:*:*:*:*:*:* (Version <= 24.5)

  • Configuration RedHat 1:
  • cpe:/o:redhat:enterprise_linux:5:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/o:redhat:enterprise_linux:5::client:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/o:redhat:enterprise_linux:5::server:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/o:redhat:enterprise_linux:6:*:*:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/o:redhat:enterprise_linux:6::client:*:*:*:*:*

  • Configuration RedHat 6:
  • cpe:/o:redhat:enterprise_linux:6::computenode:*:*:*:*:*

  • Configuration RedHat 7:
  • cpe:/o:redhat:enterprise_linux:6::server:*:*:*:*:*

  • Configuration RedHat 8:
  • cpe:/o:redhat:enterprise_linux:6::workstation:*:*:*:*:*

  • Configuration RedHat 9:
  • cpe:/o:redhat:enterprise_linux:7:*:*:*:*:*:*:*

  • Configuration RedHat 10:
  • cpe:/o:redhat:enterprise_linux:7::client:*:*:*:*:*

  • Configuration RedHat 11:
  • cpe:/o:redhat:enterprise_linux:7::computenode:*:*:*:*:*

  • Configuration RedHat 12:
  • cpe:/o:redhat:enterprise_linux:7::server:*:*:*:*:*

  • Configuration RedHat 13:
  • cpe:/o:redhat:enterprise_linux:7::workstation:*:*:*:*:*

  • Configuration RedHat 14:
  • cpe:/a:redhat:rhel_productivity:5:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:mozilla:firefox:29.0:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:firefox_esr:24.5:*:*:*:*:*:*:*
  • OR cpe:/a:mozilla:thunderbird:24.5.0:*:*:*:*:*:*:*
  • AND
  • cpe:/o:redhat:enterprise_linux:5:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:5::client:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:6::server:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:6::workstation:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux_desktop:6:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux_hpc_node:6:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:609
    P
    Security update for sqlite3 (Moderate) (in QA)
    2022-10-04
    oval:org.opensuse.security:def:20141538
    V
    CVE-2014-1538
    2022-06-30
    oval:org.opensuse.security:def:1301
    P
    Security update for the Linux Kernel (Live Patch 10 for SLE 15 SP3) (Important)
    2022-04-14
    oval:org.opensuse.security:def:1693
    P
    Security update for stunnel (Important)
    2022-03-16
    oval:org.opensuse.security:def:111904
    P
    MozillaThunderbird-45.5.1-1.1 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:64678
    P
    Security update for apache2 (Important)
    2022-01-17
    oval:org.opensuse.security:def:113433
    P
    seamonkey-2.40-6.1 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:111898
    P
    MozillaFirefox-50.1.0-1.1 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:945
    P
    Security update for net-snmp (Important)
    2022-01-11
    oval:org.opensuse.security:def:31755
    P
    Security update for libvirt (Important)
    2022-01-10
    oval:org.opensuse.security:def:33759
    P
    Security update for chrony (Moderate)
    2021-12-22
    oval:org.opensuse.security:def:32252
    P
    Security update for chrony (Moderate)
    2021-12-22
    oval:org.opensuse.security:def:29447
    P
    Security update for postgresql96 (Important)
    2021-11-22
    oval:org.opensuse.security:def:1137
    P
    Security update for the Linux Kernel (Important)
    2021-11-16
    oval:org.opensuse.security:def:33034
    P
    Security update for opensc (Important)
    2021-10-29
    oval:org.opensuse.security:def:55259
    P
    Security update for strongswan (Important)
    2021-10-19
    oval:org.opensuse.security:def:32203
    P
    Security update for the Linux Kernel (Live Patch 40 for SLE 12 SP3) (Important)
    2021-10-18
    oval:org.opensuse.security:def:105475
    P
    MozillaFirefox-50.1.0-1.1 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:105477
    P
    MozillaThunderbird-45.5.1-1.1 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:106834
    P
    seamonkey-2.40-6.1 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:33720
    P
    Security update for MozillaFirefox (Important)
    2021-09-22
    oval:org.opensuse.security:def:71352
    P
    openssh-7.9p1-4.7 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:33003
    P
    Security update for postgresql13 (Moderate)
    2021-09-16
    oval:org.opensuse.security:def:29421
    P
    Security update for transfig (Moderate)
    2021-09-16
    oval:org.opensuse.security:def:64765
    P
    Security update for ghostscript (Critical)
    2021-09-15
    oval:org.opensuse.security:def:32992
    P
    Security update for gstreamer-plugins-good (Moderate)
    2021-09-02
    oval:org.opensuse.security:def:26115
    P
    Security update for libesmtp (Important)
    2021-09-02
    oval:org.opensuse.security:def:32995
    P
    Security update for file (Important)
    2021-09-02
    oval:org.opensuse.security:def:32991
    P
    Security update for openexr (Important)
    2021-09-02
    oval:org.opensuse.security:def:55937
    P
    Security update for java-1_8_0-openjdk (Important)
    2021-08-20
    oval:org.opensuse.security:def:48287
    P
    python-pywbem-0.7.0-4.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47266
    P
    glib2-lang-2.48.2-10.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48119
    P
    libgraphite2-3-1.3.1-10.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:34505
    P
    Security update for libcares2 (Important)
    2021-08-16
    oval:org.opensuse.security:def:47634
    P
    gstreamer-plugins-base-1.8.3-12.11 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48045
    P
    ibus-chewing-1.4.14-4.11 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47659
    P
    krb5-appl-clients-1.0.3-1.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48320
    P
    sysvinit-tools-2.88+-101.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48358
    P
    zypper-1.13.51-21.26.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47459
    P
    pam_krb5-2.4.4-4.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48211
    P
    libunwind-1.1-11.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47755
    P
    libopenssl1_1-1.1.1-1.9 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48129
    P
    libjansson4-2.12-3.5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47130
    P
    powerpc-utils-1.3.2-17.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47673
    P
    libXdmcp6-1.1.1-12.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47591
    P
    dbus-1-1.8.22-29.10.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47948
    P
    apache-commons-httpclient-3.1-4.364 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48191
    P
    libsmi-0.4.8-18.55 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47131
    P
    ppc64-diag-2.7.1-5.6 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47794
    P
    libtasn1-4.9-3.5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47619
    P
    giflib-progs-5.0.5-12.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47683
    P
    libXrender1-0.9.8-7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48080
    P
    libXinerama1-1.1.3-3.54 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48256
    P
    pam_krb5-2.4.4-4.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47145
    P
    rpcbind-0.2.3-21.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47987
    P
    cyrus-sasl-2.1.26-8.7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47620
    P
    git-core-2.12.3-27.14.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47831
    P
    mutt-1.10.1-55.6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47658
    P
    krb5-1.12.5-40.28.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48172
    P
    libpng12-0-1.2.50-19.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:33955
    P
    Security update for cpio (Important)
    2021-08-14
    oval:org.opensuse.security:def:1098
    P
    libopenjp2-7-2.3.0-1.25 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:1732
    P
    open-vm-tools-desktop-11.2.5-1.17 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:32147
    P
    Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP3) (Important)
    2021-07-21
    oval:org.opensuse.security:def:68012
    P
    Security update for the Linux Kernel (Live Patch 16 for SLE 15 SP1) (Important)
    2021-07-14
    oval:org.opensuse.security:def:29389
    P
    Security update for libnettle (Important)
    2021-06-23
    oval:org.opensuse.security:def:32121
    P
    Security update for webkit2gtk3 (Important)
    2021-06-17
    oval:org.opensuse.security:def:33671
    P
    Security update for freeradius-server (Moderate)
    2021-06-11
    oval:org.opensuse.security:def:36071
    P
    MozillaFirefox-31.7.0esr-0.8.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48745
    P
    libsilc-1_1-2-1.1.10-24.128 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48719
    P
    freerdp-1.0.2-7.9 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48776
    P
    gnome-shell-calendar-3.20.4-70.4 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36362
    P
    MozillaFirefox-devel-31.7.0esr-0.8.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48784
    P
    libFLAC++6-32bit-1.3.0-11.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48534
    P
    libpng12-0-1.2.50-13.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48359
    P
    DirectFB-1.7.1-6.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48847
    P
    lhasa-0.2.0-5.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:63524
    P
    MozillaThunderbird-52.8-1.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48815
    P
    raptor-2.0.10-3.67 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48618
    P
    rsyslog-8.4.0-14.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48573
    P
    libzip2-0.11.1-12.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48886
    P
    telepathy-gabble-0.18.3-5.7 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48680
    P
    libIlmImf-Imf_2_1-21-32bit-2.1.0-4.5 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:2435
    P
    MozillaThunderbird-52.8-1.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48657
    P
    yast2-3.1.206-36.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:42478
    P
    MozillaFirefox-31.7.0esr-0.8.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:33916
    P
    Security update for dhcp (Important)
    2021-06-01
    oval:org.opensuse.security:def:31623
    P
    Security update for libxml2 (Important)
    2021-05-19
    oval:org.opensuse.security:def:26046
    P
    Security update for libxml2 (Moderate)
    2021-05-05
    oval:org.opensuse.security:def:34661
    P
    Security update for nghttp2 (Important)
    2021-03-24
    oval:org.opensuse.security:def:68112
    P
    Security update for the Linux Kernel (Live Patch 14 for SLE 15 SP1) (Important)
    2021-03-17
    oval:org.opensuse.security:def:33783
    P
    Security update for python (Moderate)
    2021-03-16
    oval:org.opensuse.security:def:29483
    P
    Security update for git (Important)
    2021-03-09
    oval:org.opensuse.security:def:55856
    P
    Security update for python-cryptography (Important)
    2021-03-02
    oval:org.opensuse.security:def:29475
    P
    Security update for java-1_8_0-ibm (Important)
    2021-02-26
    oval:org.opensuse.security:def:33082
    P
    Security update for freeradius-server (Low)
    2021-02-22
    oval:org.opensuse.security:def:26197
    P
    Security update for postgresql13 (Moderate)
    2021-02-22
    oval:org.opensuse.security:def:26196
    P
    Security update for ImageMagick (Moderate)
    2021-02-19
    oval:org.opensuse.security:def:34023
    P
    Security update for jasper (Important)
    2021-02-16
    oval:org.opensuse.security:def:32255
    P
    Security update for the Linux Kernel (Important)
    2021-02-12
    oval:org.opensuse.security:def:34465
    P
    Security update for mutt (Moderate)
    2021-01-22
    oval:org.opensuse.security:def:33653
    P
    Security update for dnsmasq (Important)
    2021-01-19
    oval:org.opensuse.security:def:33979
    P
    Security update for java-1_8_0-ibm (Moderate)
    2021-01-05
    oval:org.opensuse.security:def:90092
    P
    MozillaThunderbird-60.6.1-3.28.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2474
    P
    MozillaThunderbird-60.6.1-3.28.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62390
    P
    MozillaFirefox-52.7.3-1.35 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:72109
    P
    MozillaFirefox-52.7.3-1.35 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:103747
    P
    MozillaThunderbird-60.6.1-3.28.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63563
    P
    MozillaThunderbird-60.6.1-3.28.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:71465
    P
    cups-filters-1.25.0-1.107 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:33614
    P
    Security update for python-setuptools (Important)
    2020-12-02
    oval:org.opensuse.security:def:27174
    P
    libapr1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26257
    P
    Security update for icu (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28231
    P
    Security update for libtirpc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29532
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:26488
    P
    Security update for cacti, cacti-spine (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27854
    P
    Security update for php53 (Important)
    2020-12-01
    oval:org.opensuse.security:def:29734
    P
    Security update for foomatic-filters (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30612
    P
    Security update for strongswan
    2020-12-01
    oval:org.opensuse.security:def:27175
    P
    libarchive2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29062
    P
    Security update for bsdtar (Important)
    2020-12-01
    oval:org.opensuse.security:def:54987
    P
    pigz on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32492
    P
    boost-license on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33867
    P
    Security update for jasper (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33187
    P
    libtiff3 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25905
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26671
    P
    apache2-mod_php53 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28661
    P
    Security update for file
    2020-12-01
    oval:org.opensuse.security:def:29912
    P
    Security update for libapr1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32357
    P
    Security update for squid3 (Important)
    2020-12-01
    oval:org.opensuse.security:def:28624
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:29189
    P
    Security update for netpbm (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33369
    P
    Security update for wget (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26687
    P
    e2fsprogs on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50119
    P
    apache2-mod_php7 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25620
    P
    Security update for ovmf (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27517
    P
    mozilla-nss-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29574
    P
    Security update for Apache2
    2020-12-01
    oval:org.opensuse.security:def:55744
    P
    Security update for xfsprogs (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32814
    P
    zoo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:57213
    P
    Security update for Mozilla Firefox
    2020-12-01
    oval:org.opensuse.security:def:54414
    P
    zoo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33508
    P
    Security update for OpenSSL
    2020-12-01
    oval:org.opensuse.security:def:26299
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26977
    P
    libupsclient1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28589
    P
    Security update for mozilla-nspr, mozilla-nss
    2020-12-01
    oval:org.opensuse.security:def:50173
    P
    MozillaThunderbird on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25621
    P
    Security update for samba (Important)
    2020-12-01
    oval:org.opensuse.security:def:26321
    P
    Security update for kcoreaddons (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28315
    P
    Security update for openssl (Important)
    2020-12-01
    oval:org.opensuse.security:def:29617
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:57287
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:31537
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26541
    P
    evince on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27893
    P
    Security update for shim
    2020-12-01
    oval:org.opensuse.security:def:29778
    P
    Security update for gnutls (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27069
    P
    MozillaFirefox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28025
    P
    Security update for bind (Critical)
    2020-12-01
    oval:org.opensuse.security:def:27186
    P
    libgcrypt11 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29193
    P
    Security update for openldap2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:55093
    P
    dnsmasq on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32648
    P
    dbus-1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33188
    P
    libtspi1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25962
    P
    Security update for mariadb (Important)
    2020-12-01
    oval:org.opensuse.security:def:26822
    P
    squidGuard on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28710
    P
    Security update for icedtea-web
    2020-12-01
    oval:org.opensuse.security:def:29930
    P
    Security update for libgcrypt
    2020-12-01
    oval:org.opensuse.security:def:28026
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:29258
    P
    Security update for tomcat6 (Important)
    2020-12-01
    oval:org.opensuse.security:def:31847
    P
    Security update for clamav (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33457
    P
    Security update for ipsec-tools
    2020-12-01
    oval:org.opensuse.security:def:27034
    P
    stunnel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34701
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:27601
    P
    Security update for automake
    2020-12-01
    oval:org.opensuse.security:def:29628
    P
    Security update for cairo (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55818
    P
    Security update for ghostscript-library (Important)
    2020-12-01
    oval:org.opensuse.security:def:32858
    P
    fetchmail on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54436
    P
    coolkey on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33565
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26338
    P
    Security update for Chromium (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27021
    P
    pyxml on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25911
    P
    Security update for gstreamer-plugins-base (Low)
    2020-12-01
    oval:org.opensuse.security:def:25632
    P
    Security update for aspell (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26449
    P
    Security update for nginx (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28372
    P
    Security update for python-numpy (Important)
    2020-12-01
    oval:org.opensuse.security:def:29770
    P
    Security update for glibc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31538
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26590
    P
    libmusicbrainz4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27907
    P
    Security update for Xen
    2020-12-01
    oval:org.opensuse.security:def:25912
    P
    Security update for zziplib (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27250
    P
    ofed on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29279
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:32704
    P
    libapr1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32035
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:33199
    P
    logwatch on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26875
    P
    coolkey on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28749
    P
    Security update for lzo
    2020-12-01
    oval:org.opensuse.security:def:29974
    P
    Security update for librsvg (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27360
    P
    MozillaFirefox-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28981
    P
    Security update for tiff (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28037
    P
    Security update for cairo (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31904
    P
    Security update for foomatic-filters (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49332
    P
    socat on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26253
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:27752
    P
    Security update for gimp
    2020-12-01
    oval:org.opensuse.security:def:29677
    P
    Security update for dnsmasq (Important)
    2020-12-01
    oval:org.opensuse.security:def:28982
    P
    Security update for tiff (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54576
    P
    libmysqlclient18 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32348
    P
    Security update for sqlite3 (Important)
    2020-12-01
    oval:org.opensuse.security:def:26352
    P
    Security update for Mozilla Thunderbird (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27325
    P
    xen on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49386
    P
    MozillaFirefox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25696
    P
    Security update for sudo (Important)
    2020-12-01
    oval:org.opensuse.security:def:26530
    P
    clamav on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28456
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:29824
    P
    Security update for java-1_6_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:32291
    P
    Security update for postgresql94 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33827
    P
    Security update for gnome-session (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30453
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:31549
    P
    Security update for screen (Low)
    2020-12-01
    oval:org.opensuse.security:def:33217
    P
    openslp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26629
    P
    perl-Tk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27951
    P
    Security update for ImageMagick (Important)
    2020-12-01
    oval:org.opensuse.security:def:26245
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25923
    P
    Security update for util-linux (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27378
    P
    build on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29336
    P
    Security update for cobbler
    2020-12-01
    oval:org.opensuse.security:def:55544
    P
    Security update for flash-player (Critical)
    2020-12-01
    oval:org.opensuse.security:def:32753
    P
    nagios-plugins on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33496
    P
    Security update for libxml2
    2020-12-01
    oval:org.opensuse.security:def:32036
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:33278
    P
    unzip on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26924
    P
    kbd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28765
    P
    Security update for librsvg (Important)
    2020-12-01
    oval:org.opensuse.security:def:30416
    P
    Security update for xorg-x11-libXext
    2020-12-01
    oval:org.opensuse.security:def:26246
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28101
    P
    Security update for git (Important)
    2020-12-01
    oval:org.opensuse.security:def:31991
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:33535
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:26337
    P
    Security update for freexl (Low)
    2020-12-01
    oval:org.opensuse.security:def:27805
    P
    Security update for libpng12-0 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29716
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:27694
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:29177
    P
    Security update for microcode_ctl (Important)
    2020-12-01
    oval:org.opensuse.security:def:28993
    P
    Security update for xscreensaver (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54814
    P
    java-1_8_0-openjdk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32405
    P
    Security update for wavpack (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33810
    P
    Security update for ghostscript-library (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26396
    P
    Security update for chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:50080
    P
    libvirt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25824
    P
    Security update for mariadb (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26587
    P
    libgtop on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28608
    P
    Security update for Xen
    2020-12-01
    oval:org.opensuse.security:def:29873
    P
    Security update for kernel-source (Important)
    2020-12-01
    oval:org.opensuse.security:def:32313
    P
    Security update for quagga (Important)
    2020-12-01
    oval:org.opensuse.security:def:29178
    P
    Security update for microcode_ctl (Important)
    2020-12-01
    oval:org.opensuse.security:def:33312
    P
    libslp1-openssl1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26643
    P
    systemtap on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27659
    P
    Security update for rubygem-rack
    2020-12-01
    oval:org.opensuse.security:def:50134
    P
    MozillaThunderbird on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25987
    P
    Security update for the Linux Kernel (Critical)
    2020-12-01
    oval:org.opensuse.security:def:27460
    P
    libmpfr1-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55652
    P
    Security update for glibc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32792
    P
    sysstat on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30649
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:54413
    P
    yast2-core on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32047
    P
    Security update for kvm (Important)
    2020-12-01
    oval:org.opensuse.security:def:33413
    P
    Security update for salt (Important)
    2020-12-01
    oval:org.opensuse.security:def:26250
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26963
    P
    libpng12-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28809
    P
    Security update for postgresql94 (Moderate)
    2020-12-01
    oval:org.mitre.oval:def:26137
    P
    SUSE-SU-2014:0824-2 -- Security update for MozillaFirefox
    2015-03-16
    oval:org.mitre.oval:def:26138
    P
    SUSE-SU-2014:0824-1 -- Security update for MozillaFirefox
    2015-03-16
    oval:org.mitre.oval:def:26284
    P
    SUSE-SU-2014:0905-1 -- Security update for Mozilla Firefox
    2015-03-16
    oval:org.mitre.oval:def:25411
    P
    SUSE-SU-2014:0824-3 -- Security update for MozillaFirefox
    2015-03-16
    oval:org.mitre.oval:def:24267
    V
    Use-after-free vulnerability in the nsTextEditRules::CreateMozBR function in Mozilla Firefox before 30.0, Firefox ESR 24.x before 24.6, and Thunderbird before 24.6 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.
    2014-10-06
    oval:org.mitre.oval:def:25198
    P
    ELSA-2014:0742: thunderbird security update (Important)
    2014-09-01
    oval:org.mitre.oval:def:25005
    P
    ELSA-2014:0741: firefox security update (Critical)
    2014-09-01
    oval:org.mitre.oval:def:24262
    P
    RHSA-2014:0741: firefox security update (Critical)
    2014-08-18
    oval:org.mitre.oval:def:24670
    P
    RHSA-2014:0742: thunderbird security update (Important)
    2014-08-18
    oval:org.mitre.oval:def:24891
    P
    DSA-2960-1 icedove - security update
    2014-08-11
    oval:org.mitre.oval:def:25064
    P
    USN-2250-1 -- thunderbird vulnerabilities
    2014-08-11
    oval:org.mitre.oval:def:24900
    P
    USN-2243-1 -- firefox vulnerabilities
    2014-08-11
    oval:org.mitre.oval:def:25038
    P
    DSA-2955-1 iceweasel - security update
    2014-08-11
    oval:org.opensuse.security:def:79921
    P
    Security update for MozillaFirefox
    2014-06-12
    oval:com.ubuntu.precise:def:20141538000
    V
    CVE-2014-1538 on Ubuntu 12.04 LTS (precise) - medium.
    2014-06-11
    oval:com.ubuntu.trusty:def:20141538000
    V
    CVE-2014-1538 on Ubuntu 14.04 LTS (trusty) - medium.
    2014-06-11
    oval:com.redhat.rhsa:def:20140741
    P
    RHSA-2014:0741: firefox security update (Critical)
    2014-06-10
    oval:com.redhat.rhsa:def:20140742
    P
    RHSA-2014:0742: thunderbird security update (Important)
    2014-06-10
    BACK
    mozilla firefox *
    mozilla firefox esr 24.0
    mozilla firefox esr 24.0.1
    mozilla firefox esr 24.0.2
    mozilla firefox esr 24.1.0
    mozilla firefox esr 24.1.1
    mozilla firefox esr 24.2
    mozilla firefox esr 24.3
    mozilla firefox esr 24.4
    mozilla firefox esr 24.5
    mozilla thunderbird 24.0
    mozilla thunderbird 24.0.1
    mozilla thunderbird 24.1
    mozilla thunderbird 24.1.1
    mozilla thunderbird 24.2
    mozilla thunderbird 24.3
    mozilla thunderbird 24.4
    mozilla thunderbird *
    mozilla firefox 29.0
    mozilla firefox esr 24.5
    mozilla thunderbird 24.5.0
    redhat enterprise linux 5
    redhat enterprise linux 5
    redhat enterprise linux 6
    redhat enterprise linux 6
    redhat enterprise linux desktop 6
    redhat enterprise linux hpc node 6