[SUSE-SU-2024:3003-1] Security update for MozillaFirefox
Security update for MozillaFirefox
This update for MozillaFirefox fixes the following issues:
Update to Firefox Extended Support Release 128.1.0 ESR (MFSA 2024-35, bsc#1228648)
- CVE-2024-7518: Fullscreen notification dialog can be obscured by document
- CVE-2024-7519: Out of bounds memory access in graphics shared memory handling
- CVE-2024-7520: Type confusion in WebAssembly
- CVE-2024-7521: Incomplete WebAssembly exception handing
- CVE-2024-7522: Out of bounds read in editor component
- CVE-2024-7524: CSP strict-dynamic bypass using web-compatibility shims
- CVE-2024-7525: Missing permission check when creating a StreamFilter
- CVE-2024-7526: Uninitialized memory used by WebGL
- CVE-2024-7527: Use-after-free in JavaScript garbage collection
- CVE-2024-7528: Use-after-free in IndexedDB
- CVE-2024-7529: Document content could partially obscure security prompts
- CVE-2024-7531: PK11_Encrypt using CKM_CHACHA20 can reveal plaintext on Intel
- ID
- SUSE-SU-2024:3003-1
- Severity
- important
- URL
- https://www.suse.com/support/update/announcement/2024/suse-su-20243003-1/
- Published
-
2024-08-23T10:44:22
(3 weeks ago) - Modified
-
2024-08-23T10:44:22
(3 weeks ago) - Rights
- Copyright 2024 SUSE LLC. All rights reserved.
- Other Advisories
-
- ALAS2-2024-2629
- ALPINE:CVE-2024-7527
- ALSA-2024:4500
- ALSA-2024:4517
- ALSA-2024:4624
- ALSA-2024:4635
- ALSA-2024:5322
- ALSA-2024:5391
- ALSA-2024:5392
- ALSA-2024:5402
- DSA-5727-1
- DSA-5733-1
- DSA-5740-1
- DSA-5744-1
- ELSA-2024-4500
- ELSA-2024-4517
- ELSA-2024-4624
- ELSA-2024-4635
- ELSA-2024-5322
- ELSA-2024-5391
- ELSA-2024-5392
- ELSA-2024-5402
- FREEBSD:5D7939F6-5989-11EF-9793-B42E991FC52E
- FREEBSD:5E4D7172-66B8-11EF-B104-B42E991FC52E
- FREEBSD:D0AC9A17-5E68-11EF-B8CC-B42E991FC52E
- MFSA-2024-29
- MFSA-2024-30
- MFSA-2024-31
- MFSA-2024-32
- MFSA-2024-33
- MFSA-2024-34
- MFSA-2024-35
- MFSA-2024-37
- MFSA-2024-38
- RHSA-2024:4500
- RHSA-2024:4517
- RHSA-2024:4624
- RHSA-2024:4635
- RHSA-2024:5322
- RHSA-2024:5391
- RHSA-2024:5392
- RHSA-2024:5402
- RLSA-2024:4500
- RLSA-2024:4624
- RLSA-2024:4635
- SSA:2024-192-01
- SSA:2024-205-03
- SSA:2024-219-01
- SUSE-SU-2024:2371-1
- SUSE-SU-2024:2399-1
- SUSE-SU-2024:2790-1
- SUSE-SU-2024:2876-1
- SUSE-SU-2024:3112-1
- USN-6890-1
- USN-6903-1
- USN-6966-1
- USN-6995-1
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |