Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

SUSE: 2014:1458-3 Important: MozillaFirefox Update Against Multiple Threats

suse
Calendar Grey November 24, 2014
Scroller Suse
Essential SUSE Security Patch for MozillaFirefox addresses various security flaws, accompanied by guidelines for secure usage.
An update that fixes 9 vulnerabilities is now available

Summary

This version update of Mozilla Firefox to 31.2.0ESR brings improvements, stability fixes and also security fixes for the following CVEs: CVE-2014-1574, CVE-2014-1575, CVE-2014-1576 ,CVE-2014-1577, CVE-2014-1578, CVE-2014-1581, CVE-2014-1583, CVE-2014-1585, CVE-2014-1586 It also disables SSLv3 by default to mitigate the protocol downgrade attack known as POODLE. Security Issues: * CVE-2014-1574 * CVE-2014-1575 * CVE-2014-1576 * CVE-2014-1577 * CVE-2014-1578

References

#900941 #905056 #905528

Cross- CVE-2014-1574 CVE-2014-1575 CVE-2014-1576

CVE-2014-1577 CVE-2014-1578 CVE-2014-1581

CVE-2014-1583 CVE-2014-1585 CVE-2014-1586

Affected Products:

SUSE Linux Enterprise Server 10 SP4 LTSS

https://www.suse.com/security/cve/CVE-2014-1574.html

https://www.suse.com/security/cve/CVE-2014-1575.html

https://www.suse.com/security/cve/CVE-2014-1576.html

https://www.suse.com/security/cve/CVE-2014-1577.html

https://www.suse.com/security/cve/CVE-2014-1578.html

https://www.suse.com/security/cve/CVE-2014-1581.html

https://www.suse.com/security/cve/CVE-2014-1583.html

https://www.suse.com/security/cve/CVE-2014-1585.html

https://www.suse.com/security/cve/CVE-2014-1586.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2014:1458-3
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.