[RHSA-2021:3154] firefox security update
Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.
This update upgrades Firefox to version 78.13.0 ESR.
Security Fix(es):
Mozilla: Uninitialized memory in a canvas object could have led to memory corruption (CVE-2021-29980)
Mozilla: Incorrect instruction reordering during JIT optimization (CVE-2021-29984)
Mozilla: Race condition when resolving DNS names could have led to memory corruption (CVE-2021-29986)
Mozilla: Memory corruption as a result of incorrect style treatment (CVE-2021-29988)
Mozilla: Memory safety bugs fixed in Thunderbird 78.13 (CVE-2021-29989)
Mozilla: Use-after-free media channels (CVE-2021-29985)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Package | Affected Version |
---|---|
pkg:rpm/redhat/firefox?arch=x86_64&distro=redhat-7.9 | < 78.13.0-2.el7_9 |
pkg:rpm/redhat/firefox?arch=s390x&distro=redhat-7.9 | < 78.13.0-2.el7_9 |
pkg:rpm/redhat/firefox?arch=ppc64le&distro=redhat-7.9 | < 78.13.0-2.el7_9 |
pkg:rpm/redhat/firefox?arch=ppc64&distro=redhat-7.9 | < 78.13.0-2.el7_9 |
pkg:rpm/redhat/firefox?arch=i686&distro=redhat-7.9 | < 78.13.0-2.el7_9 |
- ID
- RHSA-2021:3154
- Severity
- important
- URL
- https://access.redhat.com/errata/RHSA-2021:3154
- Published
-
2021-08-16T00:00:00
(3 years ago) - Modified
-
2021-08-16T00:00:00
(3 years ago) - Rights
- Copyright 2021 Red Hat, Inc.
- Other Advisories
-
- ALAS2-2021-1709
- ALPINE:CVE-2021-29980
- ALPINE:CVE-2021-29984
- ALPINE:CVE-2021-29985
- ALPINE:CVE-2021-29986
- ALPINE:CVE-2021-29988
- ALPINE:CVE-2021-29989
- ALSA-2021:3155
- ALSA-2021:3157
- ASA-202108-14
- DSA-4956-1
- DSA-4959-1
- ELSA-2021-3154
- ELSA-2021-3155
- ELSA-2021-3157
- ELSA-2021-3160
- GLSA-202202-03
- GLSA-202208-14
- MFSA-2021-33
- MFSA-2021-34
- MFSA-2021-35
- MFSA-2021-36
- openSUSE-SU-2021:1184-1
- openSUSE-SU-2021:1367-1
- openSUSE-SU-2021:2774-1
- openSUSE-SU-2021:2874-1
- openSUSE-SU-2021:3331-1
- openSUSE-SU-2021:3451-1
- RHSA-2021:3155
- RHSA-2021:3157
- RHSA-2021:3160
- RLSA-2021:3155
- SUSE-SU-2021:2691-1
- SUSE-SU-2021:2694-1
- SUSE-SU-2021:2774-1
- SUSE-SU-2021:2874-1
- SUSE-SU-2021:3191-1
- SUSE-SU-2021:3331-1
- SUSE-SU-2021:3451-1
- SUSE-SU-2022:1577-1
- SUSE-SU-2022:1582-1
- USN-5037-1
- USN-5058-1
Source | # ID | Name | URL |
---|---|---|---|
Bugzilla | 1992417 | https://bugzilla.redhat.com/1992417 | |
Bugzilla | 1992419 | https://bugzilla.redhat.com/1992419 | |
Bugzilla | 1992420 | https://bugzilla.redhat.com/1992420 | |
Bugzilla | 1992421 | https://bugzilla.redhat.com/1992421 | |
Bugzilla | 1992422 | https://bugzilla.redhat.com/1992422 | |
Bugzilla | 1992423 | https://bugzilla.redhat.com/1992423 | |
RHSA | RHSA-2021:3154 | https://access.redhat.com/errata/RHSA-2021:3154 | |
CVE | CVE-2021-29980 | https://access.redhat.com/security/cve/CVE-2021-29980 | |
CVE | CVE-2021-29984 | https://access.redhat.com/security/cve/CVE-2021-29984 | |
CVE | CVE-2021-29985 | https://access.redhat.com/security/cve/CVE-2021-29985 | |
CVE | CVE-2021-29986 | https://access.redhat.com/security/cve/CVE-2021-29986 | |
CVE | CVE-2021-29988 | https://access.redhat.com/security/cve/CVE-2021-29988 | |
CVE | CVE-2021-29989 | https://access.redhat.com/security/cve/CVE-2021-29989 |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/redhat/firefox?arch=x86_64&distro=redhat-7.9 | redhat | firefox | < 78.13.0-2.el7_9 | redhat-7.9 | x86_64 | |
Affected | pkg:rpm/redhat/firefox?arch=s390x&distro=redhat-7.9 | redhat | firefox | < 78.13.0-2.el7_9 | redhat-7.9 | s390x | |
Affected | pkg:rpm/redhat/firefox?arch=ppc64le&distro=redhat-7.9 | redhat | firefox | < 78.13.0-2.el7_9 | redhat-7.9 | ppc64le | |
Affected | pkg:rpm/redhat/firefox?arch=ppc64&distro=redhat-7.9 | redhat | firefox | < 78.13.0-2.el7_9 | redhat-7.9 | ppc64 | |
Affected | pkg:rpm/redhat/firefox?arch=i686&distro=redhat-7.9 | redhat | firefox | < 78.13.0-2.el7_9 | redhat-7.9 | i686 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |