Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE 11-SP2: 2016:2061-1 Important: Firefox Security Issues Resolved

suse
Calendar Grey August 12, 2016
Dist Suse Esm H88
A significant SUSE patch addresses 30 vulnerabilities within MozillaFirefox and its associated components to improve overall system safety.
An update that fixes 24 vulnerabilities is now available

Summary

MozillaFirefox, MozillaFirefox-branding-SLE, mozilla-nspr and mozilla-nss were updated to fix nine security issues. MozillaFirefox was updated to version 45.3.0 ESR. mozilla-nss was updated to version 3.21.1, mozilla-nspr to version 4.12. These security issues were fixed in 45.3.0ESR: - CVE-2016-2835/CVE-2016-2836: Miscellaneous memory safety hazards (rv:48.0 / rv:45.3) (MFSA 2016-62) - CVE-2016-2830: Favicon network connection can persist when page is closed (MFSA 2016-63) - CVE-2016-2838: Buffer overflow rendering SVG with bidirectional content (MFSA 2016-64) - CVE-2016-2839: Cairo rendering crash due to memory allocation issue with FFmpeg 0.10 (MFSA 2016-65) - CVE-2016-5252: Stack underflow during 2D graphics rendering (MFSA 2016-67)

References

#983549 #983638 #983639 #983643 #983646 #983651

#983652 #983653 #983655 #984006 #985659 #989196

#990628 #990856 #991809

Cross- CVE-2016-2815 CVE-2016-2818 CVE-2016-2819

CVE-2016-2821 CVE-2016-2822 CVE-2016-2824

CVE-2016-2828 CVE-2016-2830 CVE-2016-2831

CVE-2016-2834 CVE-2016-2835 CVE-2016-2836

CVE-2016-2837 CVE-2016-2838 CVE-2016-2839

CVE-2016-5252 CVE-2016-5254 CVE-2016-5258

CVE-2016-5259 CVE-2016-5262 CVE-2016-5263

CVE-2016-5264 CVE-2016-5265 CVE-2016-6354

Affected Products:

SUSE Linux Enterprise Server 11-SP2-LTSS

SUSE Linux Enterprise Debuginfo 11-SP2

https://www.suse.com/security/cve/CVE-2016-2815.html

https://www.suse.com/security/cve/CVE-2016-2818.html

https://www.suse.com/security/cve/CVE-2016-2819.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2016:2061-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here