[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.4] firefox-esr: various vulnerabilities (CVE-2016-9893, CVE-2016-9895, CVE-2016-9897, CVE-2016-9898, CVE-2016-9899, CVE-2016-9900, CVE-2016-9901, CVE-2016-9902, CVE-2016-9904, CVE-2016-9905)

ID: oval:org.secpod.oval:def:1800382Date: (C)2018-03-29   (M)2023-12-20
Class: PATCHFamily: unix




CVE-2016-9893: Memory safety bugs CVE-2016-9895: CSP bypass using marquee tag CVE-2016-9897: Memory corruption in libGLES CVE-2016-9898: Use-after-free in Editor while manipulating DOM subtrees CVE-2016-9899: Use-after-free while manipulating DOM events and audio elements CVE-2016-9900: Restricted external resources can be loaded by SVG images through data URLs CVE-2016-9901: Data from Pocket server improperly sanitized before execution CVE-2016-9902: Pocket extension does not validate the origin of events CVE-2016-9904: Cross-origin information leak in shared atoms CVE-2016-9905: Crash in EnumerateSubDocuments Fixed In: Firefox ESR 45.6 Reference:

Platform:
Alpine Linux 3.4
Product:
firefox-esr
Reference:
6532
CVE-2016-9893
CVE-2016-9895
CVE-2016-9897
CVE-2016-9898
CVE-2016-9899
CVE-2016-9900
CVE-2016-9901
CVE-2016-9902
CVE-2016-9904
CVE-2016-9905
CVE    10
CVE-2016-9905
CVE-2016-9900
CVE-2016-9899
CVE-2016-9898
...
CPE    2
cpe:/a:mozilla:firefox-esr
cpe:/o:alpinelinux:alpine_linux:3.4

© SecPod Technologies