gpp_maybe
Security update for mozillafirefox
SUSE-SLE-SAP-12-SP3-2019-2872
This update for MozillaFirefox to 68.2.0 ESR fixes the following issues: Mozilla Firefox was updated to version 68.2.0 ESR (bsc#1154738). Security issues fixed: - CVE-2019-15903: Fixed a heap overflow in the expat library (bsc#1149429). - CVE-2019-11757: Fixed a use-after-free when creating index updates in IndexedDB (bsc#1154738). - CVE-2019-11758: Fixed a potentially exploitable crash due to 360 Total Security (bsc#1154738). - CVE-2019-11759: Fixed a stack buffer overflow in HKDF output (bsc#1154738). - CVE-2019-11760: Fixed a stack buffer overflow in WebRTC networking (bsc#1154738). - CVE-2019-11761: Fixed an unintended access to a privileged JSONView object (bsc#1154738). - CVE-2019-11762: Fixed a same-origin-property violation (bsc#1154738). - CVE-2019-11763: Fixed an XSS bypass (bsc#1154738). - CVE-2019-11764: Fixed several memory safety bugs (bsc#1154738). Non-security issues fixed: - Firefox 60.7 ESR changed the user interface language (bsc#1137990). - Wrong Firefox GUI Language (bsc#1120374). - Fixed an inadvertent crash report transmission without user opt-in (bsc#1074235). - Firefox hangs randomly when browsing and scrolling (bsc#1043008). - Firefox stops loading page until mouse is moved (bsc#1025108).
-
Release DateOct 31 2019
-
ReferencesBugzilla: 1149429, 1010399, 1010405, 1010406, 1010408, 1010409, 1010421, 1010423, 1010424, 1010425, 1010426, 1025108, 1043008, 1047281, 1074235, 1092611, 1120374, 1137990, 1154738, 959933, 983922
CVEs: CVE-2016-2830, CVE-2016-5289, CVE-2016-5292, CVE-2016-9063, CVE-2016-9067, CVE-2016-9068, CVE-2016-9069, CVE-2016-9071, CVE-2016-9073, CVE-2016-9075, CVE-2016-9076, CVE-2016-9077, CVE-2017-7789, CVE-2018-5150, CVE-2018-5151, CVE-2018-5152, CVE-2018-5153, CVE-2018-5154, CVE-2018-5155, CVE-2018-5157, CVE-2018-5158, CVE-2018-5159, CVE-2018-5160, CVE-2018-5163, CVE-2018-5164, CVE-2018-5165, CVE-2018-5166, CVE-2018-5167, CVE-2018-5168, CVE-2018-5169, CVE-2018-5172, CVE-2018-5173, CVE-2018-5174, CVE-2018-5175, CVE-2018-5176, CVE-2018-5177, CVE-2018-5178, CVE-2018-5179, CVE-2018-5180, CVE-2018-5181, CVE-2018-5182, CVE-2018-5183, CVE-2019-11757, CVE-2019-11758, CVE-2019-11759, CVE-2019-11760, CVE-2019-11761, CVE-2019-11762, CVE-2019-11763, CVE-2019-11764, CVE-2019-15903 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server for SAP Applications 12.3 x86_64
-
PackagesMozillaFirefox
Mozilla Firefox Web BrowserMozillaFirefox-translations-common68.2.0-109.95.2 lock rpm lock src
Common translations for Firefox68.2.0-109.95.2 lock rpm
SUSE Linux Enterprise Server for SAP Applications 12.3 ppc64le
-
PackagesMozillaFirefox
Mozilla Firefox Web BrowserMozillaFirefox-translations-common68.2.0-109.95.2 lock rpm lock src
Common translations for Firefox68.2.0-109.95.2 lock rpm