Important: firefox security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2024:4500", "synopsis": "Important: firefox security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for firefox.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.\n\nSecurity Fix(es):\n\n* Mozilla: Memory safety bugs fixed in Firefox 128, Firefox ESR 115.13, and Thunderbird 115.13 (CVE-2024-6604)\n\n* Mozilla: Race condition in permission assignment (CVE-2024-6601)\n\n* Mozilla: Memory corruption in thread creation (CVE-2024-6603)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2296636", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2296636", "description": ""}, {"ticket": "2296639", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2296639", "description": ""}], "cves": [{"name": "CVE-2024-6601", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-6601", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-6603", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-6603", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-6604", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-6604", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}], "references": [], "publishedAt": "2024-07-15T12:18:45.298153Z", "rpms": {"Rocky Linux 9": {"nvras":["firefox-0:115.13.0-3.el9_4.aarch64.rpm", "firefox-0:115.13.0-3.el9_4.ppc64le.rpm", "firefox-0:115.13.0-3.el9_4.s390x.rpm", "firefox-0:115.13.0-3.el9_4.src.rpm", "firefox-0:115.13.0-3.el9_4.x86_64.rpm", "firefox-debuginfo-0:115.13.0-3.el9_4.aarch64.rpm", "firefox-debuginfo-0:115.13.0-3.el9_4.ppc64le.rpm", "firefox-debuginfo-0:115.13.0-3.el9_4.s390x.rpm", "firefox-debuginfo-0:115.13.0-3.el9_4.x86_64.rpm", "firefox-debugsource-0:115.13.0-3.el9_4.aarch64.rpm", "firefox-debugsource-0:115.13.0-3.el9_4.ppc64le.rpm", "firefox-debugsource-0:115.13.0-3.el9_4.s390x.rpm", "firefox-debugsource-0:115.13.0-3.el9_4.x86_64.rpm", "firefox-x11-0:115.13.0-3.el9_4.aarch64.rpm", "firefox-x11-0:115.13.0-3.el9_4.ppc64le.rpm", "firefox-x11-0:115.13.0-3.el9_4.s390x.rpm", "firefox-x11-0:115.13.0-3.el9_4.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Rocky Linux 9 rolls out significant Firefox security patch tackling memory stability and access rights vulnerabilities, including various resolutions.. firefox update, Rocky Linux advisory, security issue fix, memory safety. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.