This update for MozillaFirefox fixes the following issues:
This update contains the Firefox Extended Support Release 91.2.0 ESR.
Release 91.2.0 ESR:
* Fixed: Various stability, functionality, and security fixes
MFSA 2021-45 (bsc#1191332):
* CVE-2021-38496: Use-after-free in MessageTask
* CVE-2021-38497: Validation message could have been overlaid on another
origin
* CVE-2021-38498: Use-after-free of nsLanguageAtomService object
* CVE-2021-32810: Fixed Data race in crossbeam-deque
* CVE-2021-38500: Memory safety bugs fixed in Firefox 93, Firefox ESR
78.15, and Firefox ESR 91.2
* CVE-2021-38501: Memory safety bugs fixed in Firefox 93 and Firefox ESR
91.2
- Fixed crash in FIPS mode (bsc#1190710)
Release 91.1.0 ESR:
* Fixed: Various stability, functionality, and security fixes
MFSA 2021-40 (bsc#1190269, bsc#1190274):
* CVE-2021-38492: Navigating to `mk:` URL scheme could load Internet
Explorer
*...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.3:
zypper in -t patch openSUSE-SLE-15.3-2021-3451=1
- openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64):
MozillaFirefox-91.2.0-8.54.1
MozillaFirefox-branding-SLE-91-9.5.1
MozillaFirefox-branding-upstream-91.2.0-8.54.1
MozillaFirefox-debuginfo-91.2.0-8.54.1
MozillaFirefox-debugsource-91.2.0-8.54.1
MozillaFirefox-devel-91.2.0-8.54.1
MozillaFirefox-translations-common-91.2.0-8.54.1
MozillaFirefox-translations-other-91.2.0-8.54.1
https://www.suse.com/security/cve/CVE-2021-29980.html
https://www.suse.com/security/cve/CVE-2021-29981.html
https://www.suse.com/security/cve/CVE-2021-29982.html
https://www.suse.com/security/cve/CVE-2021-29983.html
https://www.suse.com/security/cve/CVE-2021-29984.html
https://www.suse.com/security/cve/CVE-2021-29985.html
https://www.suse.com/security/cve/CVE-2021-29986.html
https://www.suse.com/security/cve/CVE-2021-29987.html
https://www.suse.com/security/cve/CVE-2021-29988.html
https://www.suse.com/security/cve/CVE-2021-29989.html
https://www.suse.com/security/cve/CVE-2021-29990.html
https://www.suse.com/security/cve/CVE-2021-29991.html
https://www.suse.com/security/cve/CVE-2021-32810.html
https://www.suse.com/security/cve/CVE-2021-38492.html
https://www.suse.com/security/cve/CVE-2021-38495.html
https://www.suse.com/security/cve/CVE-2021-38496.html
https://www.suse.com/security/cve/CVE-2021-38497.html
https://www.suse.com/security/cve/CVE-2021-38498.html
https://www.suse.com/security/cve/CVE-2021-385...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.