[SUSE-SU-2019:1684-1] Security update for MozillaFirefox

Severity Important
Affected Packages 47
CVEs 1

Security update for MozillaFirefox

This update for MozillaFirefox fixes the following issues:

  • Mozilla Firefox Firefox 60.7.2
    MFSA 2019-19 (bsc#1138872)

  • CVE-2019-11708: Fix sandbox escape using Prompt:Open.

    • Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes could result in the non-sandboxed parent process opening web content chosen by a compromised child process. When combined with additional vulnerabilities this could result in executing arbitrary code on the user's computer.
Package Affected Version
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=4 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=3 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=2 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=1 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sled-12&sp=4 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sled-12&sp=3 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=4 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=3 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=2 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=1 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=4 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=3 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=2 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=1 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=4 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=3 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=4 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=3 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=2 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=1 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sled-12&sp=4 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sled-12&sp=3 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=4 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=3 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=2 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=1 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=4 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=3 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=2 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=1 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=4 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=3 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=2 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=1 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=2 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=1 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=2 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=1 < 60.7.2-109.80.1
pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12 < 60.7.2-109.80.1
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=4 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=3 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=2 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=1 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sled-12&sp=4 suse MozillaFirefox < 60.7.2-109.80.1 sled-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sled-12&sp=3 suse MozillaFirefox < 60.7.2-109.80.1 sled-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=4 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=3 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=2 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=1 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=4 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=3 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=2 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=1 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=4 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 aarch64
Affected pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=3 suse MozillaFirefox < 60.7.2-109.80.1 sles-12 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=4 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=3 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=2 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=1 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sled-12&sp=4 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sled-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sled-12&sp=3 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sled-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=4 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=3 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=2 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=1 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=4 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=3 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=2 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=1 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=4 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=3 suse MozillaFirefox-translations-common < 60.7.2-109.80.1 sles-12 aarch64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=2 suse MozillaFirefox-devel < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=1 suse MozillaFirefox-devel < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12 suse MozillaFirefox-devel < 60.7.2-109.80.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=2 suse MozillaFirefox-devel < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=1 suse MozillaFirefox-devel < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12 suse MozillaFirefox-devel < 60.7.2-109.80.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=2 suse MozillaFirefox-devel < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=1 suse MozillaFirefox-devel < 60.7.2-109.80.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12 suse MozillaFirefox-devel < 60.7.2-109.80.1 sles-12 ppc64le
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...