Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 515
Alerts This Week
Warning Icon 1 515

SUSE: 2021:25532-3 High Risk: Chrome Browser Security Patch

suse
Calendar Grey December 21, 2020
Scroller Suse
Important SUSE Security Patch for MozillaFirefox resolves various vulnerabilities. Make sure to update quickly for enhanced security.
An update that fixes 8 vulnerabilities is now available

Summary

This update for MozillaFirefox fixes the following issues: - Firefox Extended Support Release 78.6.0 ESR * Fixed: Various stability, functionality, and security fixes MFSA 2020-55 (bsc#1180039) * CVE-2020-16042 (bmo#1679003) Operations on a BigInt could have caused uninitialized memory to be exposed * CVE-2020-26971 (bmo#1663466) Heap buffer overflow in WebGL * CVE-2020-26973 (bmo#1680084) CSS Sanitizer performed incorrect sanitization * CVE-2020-26974 (bmo#1681022) Incorrect cast of StyleGenericFlexBasis resulted in a heap use-after-free * CVE-2020-26978 (bmo#1677047) Internal network hosts could have been probed by a malicious webpage * CVE-2020-35111 (bmo#1657916) The proxy.onRequest API did not catch view-source URLs * CVE-2020-35112 (bmo#1661365) Opening an extension-less download may

References

#1180039

Cross- CVE-2020-16042 CVE-2020-26971 CVE-2020-26973

CVE-2020-26974 CVE-2020-26978 CVE-2020-35111

CVE-2020-35112 CVE-2020-35113

Affected Products:

SUSE Linux Enterprise Server 11-SP4-LTSS

SUSE Linux Enterprise Debuginfo 11-SP4

https://www.suse.com/security/cve/CVE-2020-16042.html

https://www.suse.com/security/cve/CVE-2020-26971.html

https://www.suse.com/security/cve/CVE-2020-26973.html

https://www.suse.com/security/cve/CVE-2020-26974.html

https://www.suse.com/security/cve/CVE-2020-26978.html

https://www.suse.com/security/cve/CVE-2020-35111.html

https://www.suse.com/security/cve/CVE-2020-35112.html

https://www.suse.com/security/cve/CVE-2020-35113.html

https://bugzilla.suse.com/1180039

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2020:14584-1
Rating: critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.