Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
100

SUSE: 2020:14359-1 Important: MozillaFirefox Security Update Overview

An update that fixes 7 vulnerabilities is now available. . SUSE Security Update: Security update for MozillaFirefox ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:14359-1 Rating: important References: #1162828 #1171186 Cross-References: CVE-2020-12387 CVE-2020-12388 CVE-2020-12389 CVE-2020-12392 CVE-2020-12393 CVE-2020-12395 CVE-2020-6831 Affected Products: SUSE Linux Enterprise Server 11-SP4-LTSS ______________________________________________________________________________ An update that fixes 7 vulnerabilities is now available. Description: This update for MozillaFirefox fixes the following issues: - Firefox Extended Support Release 68.8.0 ESR MFSA 2020-17 (bsc#1171186) * CVE-2020-12387 (bmo#1545345) Use-after-free during worker shutdown * CVE-2020-12388 (bmo#1618911) Sandbox escape with improperly guarded Access Tokens * CVE-2020-12389 (bmo#1554110) Sandbox escape with improperly separated process types * CVE-2020-6831 (bmo#1632241) Buffer overflow in SCTP chunk input validation * CVE-2020-12392 (bmo#1614468) Arbitrary local file access with 'Copy as cURL' * CVE-2020-12393 (bmo#1615471) Devtools' 'Copy as cURL' feature did not fully escape website-controlled data, potentially leading to command injection * CVE-2020-12395 (bmo#1595886, bmo#1611482, bmo#1614704, bmo#1624098, bmo#1625749, bmo#1626382, bmo#1628076, bmo#1631508) Memory safety bugs fixed in Firefox 76 and Firefox ESR 68.8 - Since firefox-gcc8 now has disabled autoreqprov for firefox-libstdc++6 and firefox-libgcc_s1, those packages don't provide some capabilities, we have to disable AutoReqProv in MozillaFirefox too so they're not added as automatic requirements. (bsc#1162828) Patch Instructions: To install this SUSE Security Update use the SUSE recommendedinstallation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 11-SP4-LTSS: zypper in -t patch slessp4-MozillaFirefox-14359=1 Package List: - SUSE Linux Enterprise Server 11-SP4-LTSS (x86_64): MozillaFirefox-68.8.0-78.73.1 MozillaFirefox-debuginfo-68.8.0-78.73.1 MozillaFirefox-translations-common-68.8.0-78.73.1 MozillaFirefox-translations-other-68.8.0-78.73.1 References: https://www.suse.com/security/cve/CVE-2020-12387.html https://www.suse.com/security/cve/CVE-2020-12388.html https://www.suse.com/security/cve/CVE-2020-12389.html https://www.suse.com/security/cve/CVE-2020-12392.html https://www.suse.com/security/cve/CVE-2020-12393.html https://www.suse.com/security/cve/CVE-2020-12395.html https://www.suse.com/security/cve/CVE-2020-6831.html https://bugzilla.suse.com/1162828 https://bugzilla.suse.com/1171186 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . SUSE Security Patch resolves six critical vulnerabilities in Mozilla Firefox as documented in advisory ID SUSE-SU-2021:23456-2.. MozillaFirefox, SUSE, Security Update, Access Tokens, Patch. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 11, 2020 Important SuSE
202

openSUSE Leap 15.1: 2020:0621-1 Important: MozillaFirefox Patch

An update that fixes 7 vulnerabilities is now available.. openSUSE Security Update: Security update for MozillaFirefox ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:0621-1 Rating: important References: #1171186 Cross-References: CVE-2020-12387 CVE-2020-12388 CVE-2020-12389 CVE-2020-12392 CVE-2020-12393 CVE-2020-12395 CVE-2020-6831 Affected Products: openSUSE Leap 15.1 ______________________________________________________________________________ An update that fixes 7 vulnerabilities is now available. Description: This update for MozillaFirefox fixes the following issues: Update to version 68.8.0 ESR (bsc#1171186): - CVE-2020-12387: Use-after-free during worker shutdown - CVE-2020-12388: Sandbox escape with improperly guarded Access Tokens - CVE-2020-12389: Sandbox escape with improperly separated process types - CVE-2020-6831: Buffer overflow in SCTP chunk input validation - CVE-2020-12392: Arbitrary local file access with 'Copy as cURL' - CVE-2020-12393: Devtools' 'Copy as cURL' feature did not fully escape website-controlled data, potentially leading to command injection - CVE-2020-12395: Memory safety bugs fixed in Firefox 76 and Firefox ESR 68.8 This update was imported from the SUSE:SLE-15:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.1: zypper in -t patch openSUSE-2020-621=1 Package List: - openSUSE Leap 15.1 (x86_64): MozillaFirefox-68.8.0-lp151.2.45.1 MozillaFirefox-branding-upstream-68.8.0-lp151.2.45.1 MozillaFirefox-buildsymbols-68.8.0-lp151.2.45.1 MozillaFirefox-debuginfo-68.8.0-lp151.2.45.1 MozillaFirefox-debugsource-68.8.0-lp151.2.45.1 MozillaFirefox-devel-68.8.0-lp151.2.45.1 MozillaFirefox-translations-common-68.8.0-lp151.2.45.1 MozillaFirefox-translations-other-68.8.0-lp151.2.45.1 References: https://www.suse.com/security/cve/CVE-2020-12387.html https://www.suse.com/security/cve/CVE-2020-12388.html https://www.suse.com/security/cve/CVE-2020-12389.html https://www.suse.com/security/cve/CVE-2020-12392.html https://www.suse.com/security/cve/CVE-2020-12393.html https://www.suse.com/security/cve/CVE-2020-12395.html https://www.suse.com/security/cve/CVE-2020-6831.html https://bugzilla.suse.com/1171186 -- . This latest openSUSE upgrade fixes critical vulnerabilities in Mozilla Firefox, enhancing protection for users.. MozillaFirefox Update, openSUSE Security Patch, Firefox Stability Fix, Access Token Security. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 11, 2020 Important OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here