[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2020:4080-01 -- Redhat firefox

ID: oval:org.secpod.oval:def:504354Date: (C)2020-10-06   (M)2023-12-20
Class: PATCHFamily: unix




Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 78.3.0 ESR. Security Fix: * Mozilla: Memory safety bugs fixed in Firefox 81 and Firefox ESR 78.3 * Mozilla: Integer overflow in nsJPEGEncoder::emptyOutputBuffer * Mozilla: X-Frame-Options bypass using object or embed tags * Mozilla: Bypassing iframe sandbox when allowing popups * Mozilla: Type confusion for special arguments in IonMonkey * Mozilla: XSS when pasting attacker-controlled data into a contenteditable element * Mozilla: Download origin spoofing via redirect * Mozilla: When recursing through layers while scrolling, an iterator may have become invalid, resulting in a potential use-after-free scenario * Mozilla: WebRTC permission prompt could have been bypassed by a compromised content process * Mozilla: Out of bound read in Date.parse * Mozilla: Custom cursor can overlay user interface * Mozilla: Overriding file type when saving to disk For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Bug Fix: * Warnings displayed when removing Firefox package

Platform:
Red Hat Enterprise Linux 7
Product:
firefox
Reference:
RHSA-2020:4080-01
CVE-2020-12422
CVE-2020-12424
CVE-2020-12425
CVE-2020-15648
CVE-2020-15653
CVE-2020-15654
CVE-2020-15656
CVE-2020-15658
CVE-2020-15673
CVE-2020-15676
CVE-2020-15677
CVE-2020-15678
CVE    12
CVE-2020-15678
CVE-2020-15677
CVE-2020-15673
CVE-2020-15676
...

© SecPod Technologies