[SUSE-SU-2022:4460-1] Security update for MozillaFirefox

Severity Important
Affected Packages 30
CVEs 7

Security update for MozillaFirefox

This update for MozillaFirefox fixes the following issues:

Firefox Extended Support Release 102.6.0 ESR (bsc#1206242):

  • CVE-2022-46880: Use-after-free in WebGL
  • CVE-2022-46872: Arbitrary file read from a compromised content process
  • CVE-2022-46881: Memory corruption in WebGL
  • CVE-2022-46874: Drag and Dropped Filenames could have been truncated to malicious extensions
  • CVE-2022-46875: Download Protections were bypassed by .atloc and .ftploc files on Mac OS
  • CVE-2022-46882: Use-after-free in WebGL
  • CVE-2022-46878: Memory safety bugs fixed in Firefox 108 and Firefox ESR 102.6
Package Affected Version
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=3 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=2 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=3 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=2 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=3 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=2 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=4 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=sles-12&sp=5 < 102.6.0-112.142.1
pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=sles-12&sp=4 < 102.6.0-112.142.1
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=5 suse MozillaFirefox < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=4 suse MozillaFirefox < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=3 suse MozillaFirefox < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-12&sp=2 suse MozillaFirefox < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=5 suse MozillaFirefox < 102.6.0-112.142.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-12&sp=4 suse MozillaFirefox < 102.6.0-112.142.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=5 suse MozillaFirefox < 102.6.0-112.142.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-12&sp=4 suse MozillaFirefox < 102.6.0-112.142.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=5 suse MozillaFirefox < 102.6.0-112.142.1 sles-12 aarch64
Affected pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-12&sp=4 suse MozillaFirefox < 102.6.0-112.142.1 sles-12 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=5 suse MozillaFirefox-translations-common < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=4 suse MozillaFirefox-translations-common < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=3 suse MozillaFirefox-translations-common < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-12&sp=2 suse MozillaFirefox-translations-common < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=5 suse MozillaFirefox-translations-common < 102.6.0-112.142.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-12&sp=4 suse MozillaFirefox-translations-common < 102.6.0-112.142.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=5 suse MozillaFirefox-translations-common < 102.6.0-112.142.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-12&sp=4 suse MozillaFirefox-translations-common < 102.6.0-112.142.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=5 suse MozillaFirefox-translations-common < 102.6.0-112.142.1 sles-12 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-12&sp=4 suse MozillaFirefox-translations-common < 102.6.0-112.142.1 sles-12 aarch64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=5 suse MozillaFirefox-devel < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=4 suse MozillaFirefox-devel < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=3 suse MozillaFirefox-devel < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-12&sp=2 suse MozillaFirefox-devel < 102.6.0-112.142.1 sles-12 x86_64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=5 suse MozillaFirefox-devel < 102.6.0-112.142.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-12&sp=4 suse MozillaFirefox-devel < 102.6.0-112.142.1 sles-12 s390x
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=5 suse MozillaFirefox-devel < 102.6.0-112.142.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-12&sp=4 suse MozillaFirefox-devel < 102.6.0-112.142.1 sles-12 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=sles-12&sp=5 suse MozillaFirefox-devel < 102.6.0-112.142.1 sles-12 aarch64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=sles-12&sp=4 suse MozillaFirefox-devel < 102.6.0-112.142.1 sles-12 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...