Опубликовано: 21 сент. 2016
Источник: oracle-oval
Платформа: Oracle Linux 5
Платформа: Oracle Linux 6
Платформа: Oracle Linux 7
Описание
ELSA-2016-1912: firefox security update (CRITICAL)
[45.4.0-1.0.1]
- Add firefox-oracle-default-prefs.js and firefox-oracle-default-bookmarks.html and remove the corresponding Red Hat files
[45.4.0-1]
- Update to 45.4.0 ESR
Обновленные пакеты
Oracle Linux 5
Oracle Linux x86_64
firefox
45.4.0-1.0.1.el5_11
Oracle Linux i386
firefox
45.4.0-1.0.1.el5_11
Oracle Linux 6
Oracle Linux x86_64
firefox
45.4.0-1.0.1.el6_8
Oracle Linux i686
firefox
45.4.0-1.0.1.el6_8
Oracle Linux 7
Oracle Linux x86_64
firefox
45.4.0-1.0.1.el7_2
Ссылки на источники
Связанные уязвимости
CVSS3: 8.8
ubuntu
почти 9 лет назад
Integer overflow in the WebSocketChannel class in the WebSockets subsystem in Mozilla Firefox before 48.0 and Firefox ESR < 45.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted packets that trigger incorrect buffer-resize operations during buffering.