[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RLSA-2021:5013 --- firefox

ID: oval:org.secpod.oval:def:4501354Date: (C)2023-04-03   (M)2024-02-08
Class: PATCHFamily: unix




Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 91.4.0 ESR. Security Fix: * Mozilla: Memory safety bugs fixed in Firefox 95 and Firefox ESR 91.4 * Mozilla: URL leakage when navigating while executing asynchronous function * Mozilla: Heap buffer overflow when using structured clone * Mozilla: Missing fullscreen and pointer lock notification when requesting both * Mozilla: GC rooting failure when calling wasm instance methods * Mozilla: External protocol handler parameters were unescaped * Mozilla: XMLHttpRequest error codes could have leaked the existence of an external protocol handler * Mozilla: Bypass of CSP sandbox directive when embedding * Mozilla: Denial of Service when using the Location API in a loop * Mozilla: Cursor spoofing could overlay user interface when native cursor is zoomed For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.

Platform:
Rocky Linux 8
Product:
firefox
Reference:
RLSA-2021:5013
CVE-2021-4129
CVE-2021-43536
CVE-2021-43537
CVE-2021-43538
CVE-2021-43539
CVE-2021-43541
CVE-2021-43542
CVE-2021-43543
CVE-2021-43545
CVE-2021-43546
CVE    10
CVE-2021-4129
CVE-2021-43541
CVE-2021-43542
CVE-2021-43536
...
CPE    1
cpe:/a:mozilla:firefox

© SecPod Technologies