Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-5099

Опубликовано: 13 нояб. 2020
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2020-5099: firefox security update (CRITICAL)

[78.4.1-1.0.1]

  • Remove upstream references [Orabug: 30143292]
  • Update distribution for Oracle Linux [Orabug: 30143292]
  • Add firefox-oracle-default-prefs.js and remove the corresponding Red Hat file
  • Update to 78.4.1
  • Filtering nss/nspr libs

[78.4.0-3]

  • Fixing flatpak build, fixing firefox.sh.in to not disable langpacks loading

[78.4.0-2]

  • Enable addon sideloading

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

firefox

78.4.1-1.0.1.el7_9

Oracle Linux x86_64

firefox

78.4.1-1.0.1.el7_9

Связанные CVE

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 5 лет назад

In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resulting in an exploitable use-after-free condition. This vulnerability affects Firefox < 82.0.3, Firefox ESR < 78.4.1, and Thunderbird < 78.4.2.

CVSS3: 8.8
redhat
около 5 лет назад

In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resulting in an exploitable use-after-free condition. This vulnerability affects Firefox < 82.0.3, Firefox ESR < 78.4.1, and Thunderbird < 78.4.2.

CVSS3: 8.8
nvd
около 5 лет назад

In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resulting in an exploitable use-after-free condition. This vulnerability affects Firefox < 82.0.3, Firefox ESR < 78.4.1, and Thunderbird < 78.4.2.

CVSS3: 8.8
debian
около 5 лет назад

In certain circumstances, the MCallGetProperty opcode can be emitted w ...

suse-cvrf
около 5 лет назад

Security update for MozillaThunderbird