[ALSA-2024:5322] firefox security update
Severity
Important
Affected Packages
4
CVEs
11
firefox security update
Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.
Security Fix(es):
- Firefox: 115.14/128.1 ESR ()
- mozilla: Fullscreen notification dialog can be obscured by document content (CVE-2024-7518)
- mozilla: Out of bounds memory access in graphics shared memory handling (CVE-2024-7519)
- mozilla: Type confusion in WebAssembly (CVE-2024-7520)
- mozilla: Incomplete WebAssembly exception handing (CVE-2024-7521)
- mozilla: Out of bounds read in editor component (CVE-2024-7522)
- mozilla: CSP strict-dynamic bypass using web-compatibility shims (CVE-2024-7524)
- mozilla: Missing permission check when creating a StreamFilter (CVE-2024-7525)
- mozilla: Uninitialized memory used by WebGL (CVE-2024-7526)
- mozilla: Use-after-free in JavaScript garbage collection (CVE-2024-7527)
- mozilla: Use-after-free in IndexedDB (CVE-2024-7528)
- mozilla: Document content could partially obscure security prompts (CVE-2024-7529)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Package | Affected Version |
---|---|
pkg:rpm/almalinux/firefox?arch=x86_64&distro=almalinux-9.4 | < 115.14.0-2.el9_4.alma.1 |
pkg:rpm/almalinux/firefox?arch=aarch64&distro=almalinux-9.4 | < 115.14.0-2.el9_4.alma.1 |
pkg:rpm/almalinux/firefox-x11?arch=x86_64&distro=almalinux-9.4 | < 115.14.0-2.el9_4.alma.1 |
pkg:rpm/almalinux/firefox-x11?arch=aarch64&distro=almalinux-9.4 | < 115.14.0-2.el9_4.alma.1 |
- ID
- ALSA-2024:5322
- Severity
- important
- URL
- https://errata.almalinux.org/ALSA-2024:5322.html
- Published
-
2024-08-15T00:00:00
(4 weeks ago) - Modified
-
2024-08-21T12:15:26
(3 weeks ago) - Rights
- Copyright 2024 AlmaLinux OS
- Other Advisories
-
- ALAS2-2024-2629
- ALPINE:CVE-2024-7527
- ALSA-2024:5391
- ALSA-2024:5392
- ALSA-2024:5402
- DSA-5740-1
- DSA-5744-1
- ELSA-2024-5322
- ELSA-2024-5391
- ELSA-2024-5392
- ELSA-2024-5402
- FREEBSD:5D7939F6-5989-11EF-9793-B42E991FC52E
- FREEBSD:5E4D7172-66B8-11EF-B104-B42E991FC52E
- FREEBSD:D0AC9A17-5E68-11EF-B8CC-B42E991FC52E
- MFSA-2024-33
- MFSA-2024-34
- MFSA-2024-35
- MFSA-2024-37
- MFSA-2024-38
- RHSA-2024:5322
- RHSA-2024:5391
- RHSA-2024:5392
- RHSA-2024:5402
- SSA:2024-219-01
- SUSE-SU-2024:2876-1
- SUSE-SU-2024:3003-1
- SUSE-SU-2024:3112-1
- USN-6966-1
- USN-6995-1
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/almalinux/firefox?arch=x86_64&distro=almalinux-9.4 | almalinux | firefox | < 115.14.0-2.el9_4.alma.1 | almalinux-9.4 | x86_64 | |
Affected | pkg:rpm/almalinux/firefox?arch=aarch64&distro=almalinux-9.4 | almalinux | firefox | < 115.14.0-2.el9_4.alma.1 | almalinux-9.4 | aarch64 | |
Affected | pkg:rpm/almalinux/firefox-x11?arch=x86_64&distro=almalinux-9.4 | almalinux | firefox-x11 | < 115.14.0-2.el9_4.alma.1 | almalinux-9.4 | x86_64 | |
Affected | pkg:rpm/almalinux/firefox-x11?arch=aarch64&distro=almalinux-9.4 | almalinux | firefox-x11 | < 115.14.0-2.el9_4.alma.1 | almalinux-9.4 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |