[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255116

 
 

909

 
 

198683

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2023:1819-1 -- SLES MozillaFirefox

ID: oval:org.secpod.oval:def:89048702Date: (C)2023-06-02   (M)2024-03-27
Class: PATCHFamily: unix




This update for MozillaFirefox fixes the following issues: * Firefox Extended Support Release 102.10.0 ESR * CVE-2023-29531: Out-of-bound memory access in WebGL on macOS * CVE-2023-29532: Mozilla Maintenance Service Write-lock bypass * CVE-2023-29533: Fullscreen notification obscured * MFSA-TMP-2023-0001: Double-free in libwebp * CVE-2023-29535: Potential Memory Corruption following Garbage Collector compaction * CVE-2023-29536: Invalid free from JavaScript code * CVE-2023-29539: Content-Disposition filename truncation leads to Reflected File Download * CVE-2023-29541: Files with malicious extensions could have been downloaded unsafely on Linux * CVE-2023-29542: Bypass of file download extension restrictions * CVE-2023-29545: Windows Save As dialog resolved environment variables * CVE-2023-1945: Memory Corruption in Safe Browsing Code * CVE-2023-29548: Incorrect optimization result on ARM64 * CVE-2023-29550: Memory safety bugs fixed in Firefox 112 and Firefox ESR 102.10

Platform:
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server 12 SP4
Product:
MozillaFirefox
Reference:
SUSE-SU-2023:1819-1
CVE-2023-1945
CVE-2023-29531
CVE-2023-29532
CVE-2023-29533
CVE-2023-29535
CVE-2023-29536
CVE-2023-29539
CVE-2023-29541
CVE-2023-29542
CVE-2023-29545
CVE-2023-29548
CVE-2023-29550
CVE    12
CVE-2023-29539
CVE-2023-29548
CVE-2023-29536
CVE-2023-29535
...
CPE    4
cpe:/o:suse:suse_linux_enterprise_server:12:sp5
cpe:/o:suse:suse_linux_enterprise_server:12:sp4
cpe:/o:suse:suse_linux_enterprise_server:12:sp2
cpe:/a:mozilla:MozillaFirefox
...

© SecPod Technologies