Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 491
Alerts This Week
Warning Icon 1 491

Debian: DSA-3805-1 Critical: Firefox-ESR Memory Issues and Threats

debian
Calendar Grey March 9, 2017
Scroller Debian
Major vulnerabilities addressed in Firefox with Debian DSA-3805-1. It is advisable to update for improved security.
Multiple security issues have been found in the Mozilla Firefox web browser: Multiple memory safety errors, use-after-frees and other implementation errors may lead to the executio...

Summary

Multiple security issues have been found in the Mozilla Firefox web
browser: Multiple memory safety errors, use-after-frees and other
implementation errors may lead to the execution of arbitrary code, ASLR
bypass, information disclosure or denial of service.

For the stable distribution (jessie), these problems have been fixed in
version 45.8.0esr-1~deb8u1.

For the unstable distribution (sid), these problems have been fixed in
version 45.8.0esr-1 of firefox-esr and version 52.0-1 of firefox.

We recommend that you upgrade your firefox-esr packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: firefox-esr
CVE ID: CVE-2017-5398 CVE-2017-5400 CVE-2017-5401 CVE-2017-5402

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.