Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.883142
Kategorie:CentOS Local Security Checks
Titel:CentOS Update for firefox CESA-2019:4108 centos6
Zusammenfassung:The remote host is missing an update for the 'firefox'; package(s) announced via the CESA-2019:4108 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'firefox'
package(s) announced via the CESA-2019:4108 advisory.

Vulnerability Insight:
Mozilla Firefox is an open-source web browser, designed for standards
compliance, performance, and portability.

This update upgrades Firefox to version 68.3.0 ESR.

Security Fix(es):

* Mozilla: Use-after-free in worker destruction (CVE-2019-17008)

* Mozilla: Memory safety bugs fixed in Firefox 71 and Firefox ESR 68.3
(CVE-2019-17012)

* Mozilla: Buffer overflow in plain text serializer (CVE-2019-17005)

* Mozilla: Use-after-free when performing device orientation checks
(CVE-2019-17010)

* Mozilla: Use-after-free when retrieving a document in antitracking
(CVE-2019-17011)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.

Affected Software/OS:
'firefox' package(s) on CentOS 6.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2019-17005
https://security.gentoo.org/glsa/202003-02
https://security.gentoo.org/glsa/202003-10
https://bugzilla.mozilla.org/show_bug.cgi?id=1584170
RedHat Security Advisories: RHSA-2020:0292
https://access.redhat.com/errata/RHSA-2020:0292
RedHat Security Advisories: RHSA-2020:0295
https://access.redhat.com/errata/RHSA-2020:0295
SuSE Security Announcement: openSUSE-SU-2020:0002 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00001.html
SuSE Security Announcement: openSUSE-SU-2020:0003 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00000.html
https://usn.ubuntu.com/4241-1/
https://usn.ubuntu.com/4335-1/
Common Vulnerability Exposure (CVE) ID: CVE-2019-17008
https://bugzilla.mozilla.org/show_bug.cgi?id=1546331
Common Vulnerability Exposure (CVE) ID: CVE-2019-17010
https://bugzilla.mozilla.org/show_bug.cgi?id=1581084
Common Vulnerability Exposure (CVE) ID: CVE-2019-17011
https://bugzilla.mozilla.org/show_bug.cgi?id=1591334
Common Vulnerability Exposure (CVE) ID: CVE-2019-17012
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1449736%2C1533957%2C1560667%2C1567209%2C1580288%2C1585760%2C1592502
CopyrightCopyright (C) 2019 Greenbone AG

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.