[SUSE-SU-2023:3898-1] Security update for MozillaFirefox

Severity Important
Affected Packages 60
CVEs 5

Security update for MozillaFirefox

This update for MozillaFirefox fixes the following issues:

Update to Firefox Extended Support Release 115.3.0 ESR (MFSA 2023-42, bsc#1215575):

Security fixes:

  • CVE-2023-5168: Out-of-bounds write in FilterNodeD2D1 (bmo#1846683).
  • CVE-2023-5169: Out-of-bounds write in PathOps (bmo#1846685).
  • CVE-2023-5171: Use-after-free in Ion Compiler (bmo#1851599).
  • CVE-2023-5174: Double-free in process spawning on Windows (bmo#1848454).
  • CVE-2023-5176: Memory safety bugs fixed in Firefox 118, Firefox ESR 115.3, and Thunderbird 115.3 (bmo#1836353, bmo#1842674, bmo#1843824, bmo#1843962, bmo#1848890, bmo#1850180, bmo#1850983, bmo#1851195).

Other fixes:

  • Fix broken build with newer binutils (bsc#1215309)
Package Affected Version
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-devel?arch=noarch&distro=sles-15&sp=3 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-devel?arch=noarch&distro=sles-15&sp=2 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-devel?arch=noarch&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-devel?arch=noarch&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=x86_64&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=x86_64&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=s390x&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=s390x&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=ppc64le&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=ppc64le&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=aarch64&distro=opensuse-leap-15.5 < 115.3.0-150200.152.108.1
pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=aarch64&distro=opensuse-leap-15.4 < 115.3.0-150200.152.108.1
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-15&sp=3 suse MozillaFirefox < 115.3.0-150200.152.108.1 sles-15 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=sles-15&sp=2 suse MozillaFirefox < 115.3.0-150200.152.108.1 sles-15 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=opensuse-leap-15.5 suse MozillaFirefox < 115.3.0-150200.152.108.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=x86_64&distro=opensuse-leap-15.4 suse MozillaFirefox < 115.3.0-150200.152.108.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-15&sp=3 suse MozillaFirefox < 115.3.0-150200.152.108.1 sles-15 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=sles-15&sp=2 suse MozillaFirefox < 115.3.0-150200.152.108.1 sles-15 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=opensuse-leap-15.5 suse MozillaFirefox < 115.3.0-150200.152.108.1 opensuse-leap-15.5 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=s390x&distro=opensuse-leap-15.4 suse MozillaFirefox < 115.3.0-150200.152.108.1 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-15&sp=3 suse MozillaFirefox < 115.3.0-150200.152.108.1 sles-15 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=sles-15&sp=2 suse MozillaFirefox < 115.3.0-150200.152.108.1 sles-15 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=opensuse-leap-15.5 suse MozillaFirefox < 115.3.0-150200.152.108.1 opensuse-leap-15.5 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=ppc64le&distro=opensuse-leap-15.4 suse MozillaFirefox < 115.3.0-150200.152.108.1 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-15&sp=3 suse MozillaFirefox < 115.3.0-150200.152.108.1 sles-15 aarch64
Affected pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=sles-15&sp=2 suse MozillaFirefox < 115.3.0-150200.152.108.1 sles-15 aarch64
Affected pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=opensuse-leap-15.5 suse MozillaFirefox < 115.3.0-150200.152.108.1 opensuse-leap-15.5 aarch64
Affected pkg:rpm/suse/MozillaFirefox?arch=aarch64&distro=opensuse-leap-15.4 suse MozillaFirefox < 115.3.0-150200.152.108.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=sles-15&sp=3 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 sles-15 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=sles-15&sp=2 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 sles-15 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=opensuse-leap-15.5 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=x86_64&distro=opensuse-leap-15.4 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=sles-15&sp=3 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 sles-15 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=sles-15&sp=2 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 sles-15 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=opensuse-leap-15.5 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 opensuse-leap-15.5 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=s390x&distro=opensuse-leap-15.4 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=sles-15&sp=3 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 sles-15 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=sles-15&sp=2 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 sles-15 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=opensuse-leap-15.5 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 opensuse-leap-15.5 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=ppc64le&distro=opensuse-leap-15.4 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=sles-15&sp=3 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 sles-15 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=sles-15&sp=2 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 sles-15 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=opensuse-leap-15.5 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 opensuse-leap-15.5 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-other?arch=aarch64&distro=opensuse-leap-15.4 suse MozillaFirefox-translations-other < 115.3.0-150200.152.108.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-15&sp=3 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 sles-15 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=sles-15&sp=2 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 sles-15 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=opensuse-leap-15.5 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=x86_64&distro=opensuse-leap-15.4 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-15&sp=3 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 sles-15 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=sles-15&sp=2 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 sles-15 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=opensuse-leap-15.5 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 opensuse-leap-15.5 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=s390x&distro=opensuse-leap-15.4 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-15&sp=3 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 sles-15 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=sles-15&sp=2 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 sles-15 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=opensuse-leap-15.5 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 opensuse-leap-15.5 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=ppc64le&distro=opensuse-leap-15.4 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-15&sp=3 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 sles-15 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=sles-15&sp=2 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 sles-15 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=opensuse-leap-15.5 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 opensuse-leap-15.5 aarch64
Affected pkg:rpm/suse/MozillaFirefox-translations-common?arch=aarch64&distro=opensuse-leap-15.4 suse MozillaFirefox-translations-common < 115.3.0-150200.152.108.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=noarch&distro=sles-15&sp=3 suse MozillaFirefox-devel < 115.3.0-150200.152.108.1 sles-15 noarch
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=noarch&distro=sles-15&sp=2 suse MozillaFirefox-devel < 115.3.0-150200.152.108.1 sles-15 noarch
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=noarch&distro=opensuse-leap-15.5 suse MozillaFirefox-devel < 115.3.0-150200.152.108.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/MozillaFirefox-devel?arch=noarch&distro=opensuse-leap-15.4 suse MozillaFirefox-devel < 115.3.0-150200.152.108.1 opensuse-leap-15.4 noarch
Affected pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=x86_64&distro=opensuse-leap-15.5 suse MozillaFirefox-branding-upstream < 115.3.0-150200.152.108.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=x86_64&distro=opensuse-leap-15.4 suse MozillaFirefox-branding-upstream < 115.3.0-150200.152.108.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=s390x&distro=opensuse-leap-15.5 suse MozillaFirefox-branding-upstream < 115.3.0-150200.152.108.1 opensuse-leap-15.5 s390x
Affected pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=s390x&distro=opensuse-leap-15.4 suse MozillaFirefox-branding-upstream < 115.3.0-150200.152.108.1 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=ppc64le&distro=opensuse-leap-15.5 suse MozillaFirefox-branding-upstream < 115.3.0-150200.152.108.1 opensuse-leap-15.5 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=ppc64le&distro=opensuse-leap-15.4 suse MozillaFirefox-branding-upstream < 115.3.0-150200.152.108.1 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=aarch64&distro=opensuse-leap-15.5 suse MozillaFirefox-branding-upstream < 115.3.0-150200.152.108.1 opensuse-leap-15.5 aarch64
Affected pkg:rpm/suse/MozillaFirefox-branding-upstream?arch=aarch64&distro=opensuse-leap-15.4 suse MozillaFirefox-branding-upstream < 115.3.0-150200.152.108.1 opensuse-leap-15.4 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...