[SUSE-SU-2024:2371-1] Security update for MozillaFirefox

Severity Important
CVEs 13

Security update for MozillaFirefox

This update for MozillaFirefox fixes the following issues:

Update to Firefox Extended Support Release 115.13.0 ESR (MFSA 2024-30, bsc#1226316):

  • CVE-2024-6600: Memory corruption in WebGL API
  • CVE-2024-6601: Race condition in permission assignment
  • CVE-2024-6602: Memory corruption in NSS
  • CVE-2024-6603: Memory corruption in thread creation
  • CVE-2024-6604: Memory safety bugs fixed in Firefox 128, Firefox ESR 115.13, and Thunderbird 115.13

Other fixes:

  • Fix GNOME search provider (bsc#1225278)
Source # ID Name URL
Suse SUSE ratings https://www.suse.com/support/security/rating/
Suse URL of this CSAF notice https://ftp.suse.com/pub/projects/security/csaf/suse-su-2024_2371-1.json
Suse URL for SUSE-SU-2024:2371-1 https://www.suse.com/support/update/announcement/2024/suse-su-20242371-1/
Suse E-Mail link for SUSE-SU-2024:2371-1 https://lists.suse.com/pipermail/sle-updates/2024-July/035869.html
Bugzilla SUSE Bug 1225278 https://bugzilla.suse.com/1225278
Bugzilla SUSE Bug 1226316 https://bugzilla.suse.com/1226316
CVE SUSE CVE CVE-2024-5688 page https://www.suse.com/security/cve/CVE-2024-5688/
CVE SUSE CVE CVE-2024-5690 page https://www.suse.com/security/cve/CVE-2024-5690/
CVE SUSE CVE CVE-2024-5691 page https://www.suse.com/security/cve/CVE-2024-5691/
CVE SUSE CVE CVE-2024-5692 page https://www.suse.com/security/cve/CVE-2024-5692/
CVE SUSE CVE CVE-2024-5693 page https://www.suse.com/security/cve/CVE-2024-5693/
CVE SUSE CVE CVE-2024-5696 page https://www.suse.com/security/cve/CVE-2024-5696/
CVE SUSE CVE CVE-2024-5700 page https://www.suse.com/security/cve/CVE-2024-5700/
CVE SUSE CVE CVE-2024-5702 page https://www.suse.com/security/cve/CVE-2024-5702/
CVE SUSE CVE CVE-2024-6600 page https://www.suse.com/security/cve/CVE-2024-6600/
CVE SUSE CVE CVE-2024-6601 page https://www.suse.com/security/cve/CVE-2024-6601/
CVE SUSE CVE CVE-2024-6602 page https://www.suse.com/security/cve/CVE-2024-6602/
CVE SUSE CVE CVE-2024-6603 page https://www.suse.com/security/cve/CVE-2024-6603/
CVE SUSE CVE CVE-2024-6604 page https://www.suse.com/security/cve/CVE-2024-6604/
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...