[SUSE-SU-2020:0971-1] Security update for MozillaFirefox

Severity Important
CVEs 5

Security update for MozillaFirefox

This update for MozillaFirefox to version 68.7.0 ESR fixes the following issues:

  • CVE-2020-6821: Uninitialized memory could be read when using the WebGL copyTexSubImage method (bsc#1168874).
  • CVE-2020-6822: Fixed out of bounds write in GMPDecodeData when processing large images (bsc#1168874).
  • CVE-2020-6825: Fixed Memory safety bugs (bsc#1168874).
  • CVE-2020-6827: Custom Tabs could have the URI spoofed (bsc#1168874).
  • CVE-2020-6828: Preference overwrite via crafted Intent (bsc#1168874).
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date