SUSE Security Update: Security update for MozillaFirefox
______________________________________________________________________________

Announcement ID:    SUSE-SU-2020:1958-1
Rating:             moderate
References:         #1173948 
Affected Products:
                    SUSE Linux Enterprise Module for Desktop Applications 15-SP2
                    SUSE Linux Enterprise Module for Desktop Applications 15-SP1
______________________________________________________________________________

   An update that contains security fixes can now be installed.

Description:

   This update for MozillaFirefox fixes the following issues:

   - Mozilla Firefox 78.0.2 MFSA 2020-28 (bsc#1173948)
     * MFSA-2020-0003 (bmo#1644076) X-Frame-Options bypass using object or
       embed tags
   - Firefox Extended Support Release 78.0.2esr ESR
     * Fixed: Security fix
     * Fixed: Fixed an accessibility regression in reader mode (bmo#1650922)
     * Fixed: Made the address bar more resilient to data corruption in the
       user profile (bmo#1649981)
     * Fixed: Fixed a regression opening certain external applications
       (bmo#1650162)


Patch Instructions:

   To install this SUSE Security Update use the SUSE recommended installation methods
   like YaST online_update or "zypper patch".

   Alternatively you can run the command listed for your product:

   - SUSE Linux Enterprise Module for Desktop Applications 15-SP2:

      zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP2-2020-1958=1

   - SUSE Linux Enterprise Module for Desktop Applications 15-SP1:

      zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP1-2020-1958=1



Package List:

   - SUSE Linux Enterprise Module for Desktop Applications 15-SP2 (aarch64 ppc64le s390x x86_64):

      MozillaFirefox-78.0.2-3.97.1
      MozillaFirefox-debuginfo-78.0.2-3.97.1
      MozillaFirefox-debugsource-78.0.2-3.97.1
      MozillaFirefox-translations-common-78.0.2-3.97.1
      MozillaFirefox-translations-other-78.0.2-3.97.1

   - SUSE Linux Enterprise Module for Desktop Applications 15-SP2 (aarch64 ppc64le x86_64):

      MozillaFirefox-devel-78.0.2-3.97.1

   - SUSE Linux Enterprise Module for Desktop Applications 15-SP1 (aarch64 ppc64le s390x x86_64):

      MozillaFirefox-78.0.2-3.97.1
      MozillaFirefox-debuginfo-78.0.2-3.97.1
      MozillaFirefox-debugsource-78.0.2-3.97.1
      MozillaFirefox-translations-common-78.0.2-3.97.1
      MozillaFirefox-translations-other-78.0.2-3.97.1

   - SUSE Linux Enterprise Module for Desktop Applications 15-SP1 (aarch64 ppc64le x86_64):

      MozillaFirefox-devel-78.0.2-3.97.1


References:

   https://bugzilla.suse.com/1173948

_______________________________________________
sle-security-updates mailing list
sle-security-updates@lists.suse.com
http://lists.suse.com/mailman/listinfo/sle-security-updates

SUSE: 2020:1958-1 moderate: MozillaFirefox

July 20, 2020
An update that contains security fixes can now be installed

Summary

This update for MozillaFirefox fixes the following issues: - Mozilla Firefox 78.0.2 MFSA 2020-28 (bsc#1173948) * MFSA-2020-0003 (bmo#1644076) X-Frame-Options bypass using object or embed tags - Firefox Extended Support Release 78.0.2esr ESR * Fixed: Security fix * Fixed: Fixed an accessibility regression in reader mode (bmo#1650922) * Fixed: Made the address bar more resilient to data corruption in the user profile (bmo#1649981) * Fixed: Fixed a regression opening certain external applications (bmo#1650162) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Desktop Applications 15-SP2: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP2-2020-1958=1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP1: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP1-2020-1958=1 Package List: - SUSE Linux Enterprise Module for Desktop Applications 15-SP2 (aarch64 ppc64le s390x x86_64): MozillaFirefox-78.0.2-3.97.1 MozillaFirefox-debuginfo-78.0.2-3.97.1 MozillaFirefox-debugsource-78.0.2-3.97.1 MozillaFirefox-translations-common-78.0.2-3.97.1 MozillaFirefox-translations-other-78.0.2-3.97.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP2 (aarch64 ppc64le x86_64): MozillaFirefox-devel-78.0.2-3.97.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP1 (aarch64 ppc64le s390x x86_64): MozillaFirefox-78.0.2-3.97.1 MozillaFirefox-debuginfo-78.0.2-3.97.1 MozillaFirefox-debugsource-78.0.2-3.97.1 MozillaFirefox-translations-common-78.0.2-3.97.1 MozillaFirefox-translations-other-78.0.2-3.97.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP1 (aarch64 ppc64le x86_64): MozillaFirefox-devel-78.0.2-3.97.1

References

#1173948

Affected Products:

SUSE Linux Enterprise Module for Desktop Applications 15-SP2

SUSE Linux Enterprise Module for Desktop Applications 15-SP1

https://bugzilla.suse.com/1173948

Severity
Announcement ID: SUSE-SU-2020:1958-1
Rating: moderate

Related News