[SUSE-SU-2023:0835-1] Security update for MozillaFirefox
Severity
Important
Affected Packages
51
CVEs
13
Security update for MozillaFirefox
This update for MozillaFirefox fixes the following issues:
Update to version 102.9.0 ESR (bsc#1209173):
- CVE-2023-28159: Fullscreen Notification could have been hidden by download popups on Android
- CVE-2023-25748: Fullscreen Notification could have been hidden by window prompts on Android
- CVE-2023-25749: Firefox for Android may have opened third-party apps without a prompt
- CVE-2023-25750: Potential ServiceWorker cache leak during private browsing mode
- CVE-2023-25751: Incorrect code generation during JIT compilation
- CVE-2023-28160: Redirect to Web Extension files may have leaked local path
- CVE-2023-28164: URL being dragged from a removed cross-origin iframe into the same tab triggered navigation
- CVE-2023-28161: One-time permissions granted to a local file were extended to other local files loaded in the same tab
- CVE-2023-28162: Invalid downcast in Worklets
- CVE-2023-25752: Potential out-of-bounds when accessing throttled streams
- CVE-2023-28163: Windows Save As dialog resolved environment variables
- CVE-2023-28176: Memory safety bugs fixed in Firefox 111 and Firefox ESR 102.9
- CVE-2023-28177: Memory safety bugs fixed in Firefox 111
- ID
- SUSE-SU-2023:0835-1
- Severity
- important
- URL
- https://www.suse.com/support/update/announcement/2023/suse-su-20230835-1/
- Published
-
2023-03-21T06:37:20
(18 months ago) - Modified
-
2023-03-21T06:37:20
(18 months ago) - Rights
- Copyright 2024 SUSE LLC. All rights reserved.
- Other Advisories
-
- ALAS2-2023-1988
- ALPINE:CVE-2023-25751
- ALPINE:CVE-2023-25752
- ALPINE:CVE-2023-28162
- ALPINE:CVE-2023-28163
- ALPINE:CVE-2023-28164
- ALPINE:CVE-2023-28176
- ALSA-2023:1336
- ALSA-2023:1337
- ALSA-2023:1403
- ALSA-2023:1407
- DSA-5374-1
- DSA-5375-1
- ELSA-2023-1333
- ELSA-2023-1336
- ELSA-2023-1337
- ELSA-2023-1401
- ELSA-2023-1403
- ELSA-2023-1407
- GLSA-202305-35
- GLSA-202305-36
- MFSA-2023-09
- MFSA-2023-10
- MFSA-2023-11
- RHSA-2023:1333
- RHSA-2023:1336
- RHSA-2023:1337
- RHSA-2023:1401
- RHSA-2023:1403
- RHSA-2023:1407
- RLSA-2023:1336
- RLSA-2023:1337
- RLSA-2023:1403
- RLSA-2023:1407
- SSA:2023-073-01
- SSA:2023-075-01
- SUSE-SU-2023:0728-1
- SUSE-SU-2023:0763-1
- SUSE-SU-2023:1736-1
- USN-5954-1
- USN-5972-1
- USN-6120-1
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-15&sp=3 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | sles-15 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-15&sp=2 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | sles-15 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=opensuse-leap-15.4 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-15&sp=3 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | sles-15 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-15&sp=2 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | sles-15 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=opensuse-leap-15.4 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-15&sp=3 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | sles-15 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-15&sp=2 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | sles-15 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=opensuse-leap-15.4 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-15&sp=3 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | sles-15 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-15&sp=2 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | sles-15 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=opensuse-leap-15.4 | suse | MozillaFirefox | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=sles-15&sp=3 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | sles-15 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=sles-15&sp=2 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | sles-15 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=opensuse-leap-15.4 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=sles-15&sp=3 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | sles-15 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=sles-15&sp=2 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | sles-15 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=opensuse-leap-15.4 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=sles-15&sp=3 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | sles-15 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=sles-15&sp=2 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | sles-15 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=opensuse-leap-15.4 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=sles-15&sp=3 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | sles-15 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=sles-15&sp=2 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | sles-15 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=opensuse-leap-15.4 | suse | MozillaFirefox-translations-other | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-15&sp=3 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | sles-15 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-15&sp=2 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | sles-15 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=opensuse-leap-15.4 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-15&sp=3 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | sles-15 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-15&sp=2 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | sles-15 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=opensuse-leap-15.4 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-15&sp=3 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | sles-15 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-15&sp=2 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | sles-15 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=opensuse-leap-15.4 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-15&sp=3 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | sles-15 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-15&sp=2 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | sles-15 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=opensuse-leap-15.4 | suse | MozillaFirefox-translations-common | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-15&sp=3 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | sles-15 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=sles-15&sp=2 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | sles-15 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=x86_64&distro=opensuse-leap-15.4 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=sles-15&sp=2 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | sles-15 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=s390x&distro=opensuse-leap-15.4 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-15&sp=3 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | sles-15 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=sles-15&sp=2 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | sles-15 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=ppc64le&distro=opensuse-leap-15.4 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=sles-15&sp=3 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | sles-15 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=sles-15&sp=2 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | sles-15 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-devel?arch=aarch64&distro=opensuse-leap-15.4 | suse | MozillaFirefox-devel | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | aarch64 | |
Affected | pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=x86_64&distro=opensuse-leap-15.4 | suse | MozillaFirefox-branding-upstream | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | x86_64 | |
Affected | pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=s390x&distro=opensuse-leap-15.4 | suse | MozillaFirefox-branding-upstream | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | s390x | |
Affected | pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=ppc64le&distro=opensuse-leap-15.4 | suse | MozillaFirefox-branding-upstream | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | ppc64le | |
Affected | pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=aarch64&distro=opensuse-leap-15.4 | suse | MozillaFirefox-branding-upstream | < 102.9.0-150200.152.81.1 | opensuse-leap-15.4 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |