[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2018:0122 -- centos 7 firefox

ID: oval:org.secpod.oval:def:204743Date: (C)2018-01-31   (M)2022-10-10
Class: PATCHFamily: unix




Mozilla Firefox is an open source web browser. This update upgrades Firefox to version 52.6.0 ESR. Security Fix: * Multiple flaws were found in the processing of malformed web content. A web page containing malicious content could cause Firefox to crash or, potentially, execute arbitrary code with the privileges of the user running Firefox. * To mitigate timing-based side-channel attacks similar to "Spectre" and "Meltdown", the resolution of performance.now has been reduced from 5s to 20s. Red Hat would like to thank the Mozilla project for reporting these issues. Upstream acknowledges Christian Holler, Jason Kratzer, Marcia Knous, Nathan Froyd, Oriol Brufau, Ronald Crane, Randell Jesup, Tyson Smith, Cobos lvarez, Ryan VanderMeulen, Sebastian Hengst, Karl Tomlinson, Xidorn Quan, Ludovic Hirlimann, Jason Orendorff, Looben Yang, Anonymous, Nils, and Xisigr as the original reporters.

Platform:
CentOS 7
Product:
firefox
Reference:
CESA-2018:0122
CVE-2018-5089
CVE-2018-5091
CVE-2018-5095
CVE-2018-5096
CVE-2018-5097
CVE-2018-5098
CVE-2018-5099
CVE-2018-5102
CVE-2018-5103
CVE-2018-5104
CVE-2018-5117
CVE    11
CVE-2018-5096
CVE-2018-5117
CVE-2018-5104
CVE-2018-5103
...
CPE    2
cpe:/o:centos:centos:7
cpe:/a:mozilla:firefox

© SecPod Technologies