[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250038

 
 

909

 
 

195843

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2024:1002-1 -- SLES MozillaFirefox

ID: oval:org.secpod.oval:def:89051698Date: (C)2024-04-26   (M)2024-05-09
Class: PATCHFamily: unix




This update for MozillaFirefox fixes the following issues: Firefox Extended Support Release 115.9.1esr ESR MFSA 2024-16 . * CVE-2024-29944: Privileged JavaScript Execution via Event Handlers . Firefox Extended Support Release 115.9.0 ESR : * CVE-2024-0743: Crash in NSS TLS method . * CVE-2024-2605: Windows Error Reporter could be used as a Sandbox escape vector . * CVE-2024-2607: JIT code failed to save return registers on Armv7-A . * CVE-2024-2608: Integer overflow could have led to out of bounds write . * CVE-2024-2616: Improve handling of out-of-memory conditions in ICU . * CVE-2023-5388: NSS susceptible to timing attack against RSA decryption . * CVE-2024-2610: Improper handling of html and body tags enabled CSP nonce leakage . * CVE-2024-2611: Clickjacking vulnerability could have led to a user accidentally granting permissions . * CVE-2024-2612: Self referencing object could have potentially led to a use- after-free . * CVE-2024-2614: Memory safety bugs fixed in Firefox 124, Firefox ESR 115.9, and Thunderbird 115.9 .

Platform:
SUSE Linux Enterprise Desktop 15 SP4
SUSE Linux Enterprise Desktop 15 SP5
SUSE Linux Enterprise Server 15 SP4
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server 15 SP3
Product:
MozillaFirefox
Reference:
SUSE-SU-2024:1002-1
CVE-2023-5388
CVE-2024-0743
CVE-2024-1546
CVE-2024-1547
CVE-2024-1548
CVE-2024-1549
CVE-2024-1550
CVE-2024-1551
CVE-2024-1552
CVE-2024-1553
CVE-2024-2605
CVE-2024-2607
CVE-2024-2608
CVE-2024-2610
CVE-2024-2611
CVE-2024-2612
CVE-2024-2614
CVE-2024-2616
CVE-2024-29944
CVE    19
CVE-2024-0743
CVE-2024-2610
CVE-2024-2611
CVE-2024-2612
...
CPE    5
cpe:/o:suse:suse_linux_enterprise_server:15:sp4
cpe:/o:suse:suse_linux_enterprise_server:15:sp3
cpe:/o:suse:suse_linux_enterprise_server:15:sp2
cpe:/a:mozilla:MozillaFirefox
...

© SecPod Technologies