gpp_maybe
Security update for mozillafirefox
SUSE-SLE-SAP-12-SP4-2022-3440
This update for MozillaFirefox fixes the following issues: Mozilla Firefox was updated from 102.2.0esr to 102.3.0esr (bsc#1203477): - CVE-2022-40959: Fixed bypassing FeaturePolicy restrictions on transient pages. - CVE-2022-40960: Fixed data-race when parsing non-UTF-8 URLs in threads. - CVE-2022-40958: Fixed bypassing secure context restriction for cookies with __Host and __Secure prefix. - CVE-2022-40956: Fixed content-security-policy base-uri bypass. - CVE-2022-40957: Fixed incoherent instruction cache when building WASM on ARM64. - CVE-2022-40962: Fixed memory safety bugs fixed in Firefox 105 and Firefox ESR 102.3.
-
Release DateSep 27 2022
-
ReferencesBugzilla: 1203477
CVEs: CVE-2022-40959, CVE-2022-40960, CVE-2022-40958, CVE-2022-40956, CVE-2022-40957, CVE-2022-40962 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server for SAP Applications 12.4 x86_64
-
PackagesMozillaFirefox
Mozilla Firefox Web BrowserMozillaFirefox-devel102.3.0-112.133.1 lock rpm lock src
Devel package for FirefoxMozillaFirefox-translations-common102.3.0-112.133.1 lock rpm
Common translations for Firefox102.3.0-112.133.1 lock rpm
SUSE Linux Enterprise Server for SAP Applications 12.4 ppc64le
-
PackagesMozillaFirefox
Mozilla Firefox Web BrowserMozillaFirefox-devel102.3.0-112.133.1 lock rpm lock src
Devel package for FirefoxMozillaFirefox-translations-common102.3.0-112.133.1 lock rpm
Common translations for Firefox102.3.0-112.133.1 lock rpm