[RHSA-2020:3241] firefox security update
Severity
Important
Affected Packages
4
CVEs
4
Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.
This update upgrades Firefox to version 68.11.0 ESR.
Security Fix(es):
chromium-browser: Use after free in ANGLE (CVE-2020-6463)
chromium-browser: Inappropriate implementation in WebRTC (CVE-2020-6514)
Mozilla: Potential leak of redirect targets when loading scripts in a worker (CVE-2020-15652)
Mozilla: Memory safety bugs fixed in Firefox 79 and Firefox ESR 68.11 (CVE-2020-15659)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Package | Affected Version |
---|---|
pkg:rpm/redhat/firefox?arch=x86_64&distro=redhat-8.2 | < 68.11.0-1.el8_2 |
pkg:rpm/redhat/firefox?arch=s390x&distro=redhat-8.2 | < 68.11.0-1.el8_2 |
pkg:rpm/redhat/firefox?arch=ppc64le&distro=redhat-8.2 | < 68.11.0-1.el8_2 |
pkg:rpm/redhat/firefox?arch=aarch64&distro=redhat-8.2 | < 68.11.0-1.el8_2 |
- ID
- RHSA-2020:3241
- Severity
- important
- URL
- https://access.redhat.com/errata/RHSA-2020:3241
- Published
-
2020-07-30T00:00:00
(4 years ago) - Modified
-
2020-07-30T00:00:00
(4 years ago) - Rights
- Copyright 2020 Red Hat, Inc.
- Other Advisories
-
- ALAS2-2020-1487
- ALPINE:CVE-2020-15652
- ALPINE:CVE-2020-15659
- ALPINE:CVE-2020-6463
- ALPINE:CVE-2020-6514
- DSA-4714-1
- DSA-4736-1
- DSA-4740-1
- DSA-4824-1
- ELSA-2020-3233
- ELSA-2020-3241
- ELSA-2020-3253
- ELSA-2020-3341
- ELSA-2020-3344
- ELSA-2020-3345
- FEDORA-2020-08561721ad
- FEDORA-2020-77f89ab772
- FEDORA-2020-84d87cbd50
- FEDORA-2020-bf684961d9
- FREEBSD:870D59B0-C6C4-11EA-8015-E09467587C17
- GLSA-202007-08
- GLSA-202007-60
- GLSA-202007-64
- GLSA-202101-30
- MFSA-2020-30
- MFSA-2020-31
- MFSA-2020-32
- MFSA-2020-33
- MFSA-2020-35
- openSUSE-SU-2020:0823-1
- openSUSE-SU-2020:0832-1
- openSUSE-SU-2020:1020-1
- openSUSE-SU-2020:1021-1
- openSUSE-SU-2020:1048-1
- openSUSE-SU-2020:1061-1
- openSUSE-SU-2020:1147-1
- openSUSE-SU-2020:1148-1
- openSUSE-SU-2020:1155-1
- openSUSE-SU-2020:1172-1
- openSUSE-SU-2020:1179-1
- openSUSE-SU-2020:1189-1
- openSUSE-SU-2020:1205-1
- RHSA-2020:1970
- RHSA-2020:3233
- RHSA-2020:3253
- RHSA-2020:3341
- RHSA-2020:3344
- RHSA-2020:3345
- RHSA-2020:3377
- SSA:2020-213-01
- SUSE-SU-2020:2100-1
- SUSE-SU-2020:2118-1
- SUSE-SU-2020:2147-1
- SUSE-SU-2020:2179-1
- USN-4443-1
Source | # ID | Name | URL |
---|---|---|---|
Bugzilla | 1840893 | https://bugzilla.redhat.com/1840893 | |
Bugzilla | 1857349 | https://bugzilla.redhat.com/1857349 | |
Bugzilla | 1861570 | https://bugzilla.redhat.com/1861570 | |
Bugzilla | 1861572 | https://bugzilla.redhat.com/1861572 | |
RHSA | RHSA-2020:3241 | https://access.redhat.com/errata/RHSA-2020:3241 | |
CVE | CVE-2020-15652 | https://access.redhat.com/security/cve/CVE-2020-15652 | |
CVE | CVE-2020-15659 | https://access.redhat.com/security/cve/CVE-2020-15659 | |
CVE | CVE-2020-6463 | https://access.redhat.com/security/cve/CVE-2020-6463 | |
CVE | CVE-2020-6514 | https://access.redhat.com/security/cve/CVE-2020-6514 |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/redhat/firefox?arch=x86_64&distro=redhat-8.2 | redhat | firefox | < 68.11.0-1.el8_2 | redhat-8.2 | x86_64 | |
Affected | pkg:rpm/redhat/firefox?arch=s390x&distro=redhat-8.2 | redhat | firefox | < 68.11.0-1.el8_2 | redhat-8.2 | s390x | |
Affected | pkg:rpm/redhat/firefox?arch=ppc64le&distro=redhat-8.2 | redhat | firefox | < 68.11.0-1.el8_2 | redhat-8.2 | ppc64le | |
Affected | pkg:rpm/redhat/firefox?arch=aarch64&distro=redhat-8.2 | redhat | firefox | < 68.11.0-1.el8_2 | redhat-8.2 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |