Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Mageia 8: 2022-0272 Moderate: Firefox Memory Leak And Security Flaws

mageia
Calendar Grey July 29, 2022
Dist Mageia Esm H88
Mageia 2022-0272: Essential chromium security patches tackle severe vulnerabilities. Ensure your safety with the newest updates.
When visiting directory listings for chrome:// URLs as source text, some parameters were reflected (CVE-2022-36318)

Summary

When visiting directory listings for chrome:// URLs as source text, some parameters were reflected (CVE-2022-36318). When combining CSS properties for overflow and transform, the mouse cursor could interact with different coordinates than displayed (CVE-2022-36319).

References

- https://bugs.mageia.org/show_bug.cgi?id=30669

- https://groups.google.com/a/mozilla.org/g/dev-tech-crypto/c/jYrL4b47r3A

- https://firefox-source-docs.mozilla.org/security/nss/releases/nss_3_81.html

- https://www.mozilla.org/en-US/security/advisories/mfsa2022-29/

- https://www.cve.org/CVERecord?id=CVE-2022-36318

- https://www.cve.org/CVERecord?id=CVE-2022-36319

Resolution

SRPMS

- 8/core/firefox-91.12.0-1.mga8

- 8/core/firefox-l10n-91.12.0-1.mga8

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 29 Jul 2022
URL: https://advisories.mageia.org/MGASA-2022-0271.html
Type: security
CVE: CVE-2022-36318, CVE-2022-36319

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here