[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2020:3557-01 -- Redhat firefox

ID: oval:org.secpod.oval:def:66568Date: (C)2020-10-30   (M)2023-02-08
Class: PATCHFamily: unix




Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 78.2.0 ESR. Security Fix: * Mozilla: Attacker-induced prompt for extension installation * Mozilla: Use-After-Free when aborting an operation * Mozilla: Integer overflow in nsJPEGEncoder::emptyOutputBuffer * Mozilla: X-Frame-Options bypass using object or embed tags * Mozilla: Bypassing iframe sandbox when allowing popups * Mozilla: Type confusion for special arguments in IonMonkey * Mozilla: WebRTC permission prompt could have been bypassed by a compromised content process * Mozilla: Out of bound read in Date.parse * Mozilla: Custom cursor can overlay user interface * Mozilla: Overriding file type when saving to disk For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.

Platform:
CentOS 8
Product:
firefox
Reference:
RHSA-2020:3557-01
CVE-2020-12422
CVE-2020-12424
CVE-2020-12425
CVE-2020-15648
CVE-2020-15653
CVE-2020-15654
CVE-2020-15656
CVE-2020-15658
CVE-2020-15664
CVE-2020-15669
CVE    10
CVE-2020-15669
CVE-2020-15664
CVE-2020-12425
CVE-2020-15648
...
CPE    2
cpe:/o:centos:centos:8
cpe:/a:mozilla:firefox

© SecPod Technologies