[SUSE-SU-2021:0246-1] Security update for MozillaFirefox

Severity Important
Affected Packages 16
CVEs 5

Security update for MozillaFirefox

This update for MozillaFirefox fixes the following issues:

  • Firefox Extended Support Release 78.7.0 ESR (MFSA 2021-04, bsc#1181414)
    • CVE-2021-23953: Fixed a Cross-origin information leakage via redirected PDF requests
    • CVE-2021-23954: Fixed a type confusion when using logical assignment operators in JavaScript switch statements
    • CVE-2020-26976: Fixed an issue where HTTPS pages could have been intercepted by a registered service worker when they should not have been
    • CVE-2021-23960: Fixed a use-after-poison for incorrectly redeclared JavaScript variables during GC
    • CVE-2021-23964: Fixed Memory safety bugs
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-15&sp=1 suse MozillaFirefox < 78.7.0-3.128.2 sles-15 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-15&sp=1 suse MozillaFirefox < 78.7.0-3.128.2 sles-15 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-15&sp=1 suse MozillaFirefox < 78.7.0-3.128.2 sles-15 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-15&sp=1 suse MozillaFirefox < 78.7.0-3.128.2 sles-15 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=sles-15&sp=1 suse MozillaFirefox-translations-other < 78.7.0-3.128.2 sles-15 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=sles-15&sp=1 suse MozillaFirefox-translations-other < 78.7.0-3.128.2 sles-15 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=sles-15&sp=1 suse MozillaFirefox-translations-other < 78.7.0-3.128.2 sles-15 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=sles-15&sp=1 suse MozillaFirefox-translations-other < 78.7.0-3.128.2 sles-15 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-15&sp=1 suse MozillaFirefox-translations-common < 78.7.0-3.128.2 sles-15 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-15&sp=1 suse MozillaFirefox-translations-common < 78.7.0-3.128.2 sles-15 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-15&sp=1 suse MozillaFirefox-translations-common < 78.7.0-3.128.2 sles-15 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-15&sp=1 suse MozillaFirefox-translations-common < 78.7.0-3.128.2 sles-15 aarch64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-15&sp=1 suse MozillaFirefox-devel < 78.7.0-3.128.2 sles-15 x86_64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-15&sp=1 suse MozillaFirefox-devel < 78.7.0-3.128.2 sles-15 s390x
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-15&sp=1 suse MozillaFirefox-devel < 78.7.0-3.128.2 sles-15 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=sles-15&sp=1 suse MozillaFirefox-devel < 78.7.0-3.128.2 sles-15 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...