Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
USN-7096-1 caused some minor regressions in OpenJDK 8.. ========================================================================== Ubuntu Security Notice USN-7096-2 February 05, 2025 openjdk-8 regressions ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: USN-7096-1 caused some minor regressions in OpenJDK 8. Software Description: - openjdk-8: Open Source Java implementation Details: USN-7096-1 fixed vulnerabilities in OpenJDK 8. The update introduced several minor regressions. This update fixes the problem. We apologize for the inconvenience. Original advisory details: Andy Boothe discovered that the Networking component of OpenJDK 8 did not properly handle access under certain circumstances. An unauthenticated attacker could possibly use this issue to cause a denial of service. (CVE-2024-21208) It was discovered that the Hotspot component of OpenJDK 8 did not properly handle vectorization under certain circumstances. An unauthenticated attacker could possibly use this issue to access unauthorized resources and expose sensitive information. (CVE-2024-21210, CVE-2024-21235) It was discovered that the Serialization component of OpenJDK 8 did not properly handle deserialization under certain circumstances. An unauthenticated attacker could possibly use this issue to cause a denial of service. (CVE-2024-21217) It was discovered that the Hotspot component of OpenJDK 8 was not properly bounding certain UTF-8 strings, which could lead to a buffer overflow. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-21131) It was discovered that the Hotspot component of OpenJDK 8 could bemade to run into an infinite loop. If an automated system were tricked into processing excessively large symbols, an attacker could possibly use this issue to cause a denial of service. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-21138) It was discovered that the Hotspot component of OpenJDK 8 did not properly perform range check elimination. An attacker could possibly use this issue to cause a denial of service, execute arbitrary code or bypass Java sandbox restrictions. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-21140) Yakov Shafranovich discovered that the Concurrency component of OpenJDK 8 incorrectly performed header validation in the Pack200 archive format. An attacker could possibly use this issue to cause a denial of service. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-21144) Sergey Bylokhov discovered that OpenJDK 8 did not properly manage memory when handling 2D images. An attacker could possibly use this issue to obtain sensitive information. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-21145) It was discovered that the Hotspot component of OpenJDK 8 incorrectly handled memory when performing range check elimination under certain circumstances. An attacker could possibly use this issue to cause a denial of service, execute arbitrary code or bypass Java sandbox restrictions. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-21147) It was discovered that the Hotspot component of OpenJDK 8 incorrectly handled certain exceptions with specially crafted long messages. An attacker could possibly use this issue to cause a denial of service. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-21011) Vladimir Kondratyev discovered that the Hotspot component of OpenJDK 8 incorrectly handled address offset calculations in the C1 compiler. An attacker could possibly use this issue to cause a denialof service or execute arbitrary code. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-21068) Yakov Shafranovich discovered that OpenJDK 8 did not properly manage memory in the Pack200 archive format. An attacker could possibly use this issue to cause a denial of service. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-21085) It was discovered that the Hotspot component of OpenJDK 8 incorrectly handled array accesses in the C2 compiler. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-21094) Yi Yang discovered that the Hotspot component of OpenJDK 8 incorrectly handled array accesses in the C1 compiler. An attacker could possibly use this issue to cause a denial of service, execute arbitrary code or bypass Java sandbox restrictions. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-20918) It was discovered that the Hotspot component of OpenJDK 8 did not properly verify bytecode in certain situations. An attacker could possibly use this issue to bypass Java sandbox restrictions. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-20919) It was discovered that the Hotspot component of OpenJDK 8 had an optimization flaw when generating range check loop predicates. An attacker could possibly use this issue to cause a denial of service, execute arbitrary code or bypass Java sandbox restrictions. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-20921) Valentin Eudeline discovered that OpenJDK 8 incorrectly handled certain options in the Nashorn JavaScript subcomponent. An attacker could possibly use this issue to execute arbitrary code. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-20926) It was discovered that OpenJDK 8 could produce debug logs that contained private keys used for digital signatures. Anattacker could possibly use this issue to obtain sensitive information. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-20945) Hubert Kario discovered that the TLS implementation in OpenJDK 8 had a timing side-channel and incorrectly handled RSA padding. A remote attacker could possibly use this issue to recover sensitive information. This issue was only addressed in Ubuntu 16.04 LTS. (CVE-2024-20952) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10 openjdk-8-jdk 8u442-b06~us1-0ubuntu1~24.10 openjdk-8-jdk-headless 8u442-b06~us1-0ubuntu1~24.10 openjdk-8-jre 8u442-b06~us1-0ubuntu1~24.10 openjdk-8-jre-headless 8u442-b06~us1-0ubuntu1~24.10 openjdk-8-jre-zero 8u442-b06~us1-0ubuntu1~24.10 Ubuntu 24.04 LTS openjdk-8-jdk 8u442-b06~us1-0ubuntu1~24.04 openjdk-8-jdk-headless 8u442-b06~us1-0ubuntu1~24.04 openjdk-8-jre 8u442-b06~us1-0ubuntu1~24.04 openjdk-8-jre-headless 8u442-b06~us1-0ubuntu1~24.04 openjdk-8-jre-zero 8u442-b06~us1-0ubuntu1~24.04 Ubuntu 22.04 LTS openjdk-8-jdk 8u442-b06~us1-0ubuntu1~22.04 openjdk-8-jdk-headless 8u442-b06~us1-0ubuntu1~22.04 openjdk-8-jre 8u442-b06~us1-0ubuntu1~22.04 openjdk-8-jre-headless 8u442-b06~us1-0ubuntu1~22.04 openjdk-8-jre-zero 8u442-b06~us1-0ubuntu1~22.04 Ubuntu 20.04 LTS openjdk-8-jdk 8u442-b06~us1-0ubuntu1~20.04 openjdk-8-jdk-headless 8u442-b06~us1-0ubuntu1~20.04 openjdk-8-jre 8u442-b06~us1-0ubuntu1~20.04 openjdk-8-jre-headless 8u442-b06~us1-0ubuntu1~20.04 openjdk-8-jre-zero 8u442-b06~us1-0ubuntu1~20.04 Ubuntu 18.04 LTS openjdk-8-jdk 8u442-b06~us1-0ubuntu1~18.04 Available with Ubuntu Pro openjdk-8-jdk-headless 8u442-b06~us1-0ubuntu1~18.04 Available with Ubuntu Pro openjdk-8-jre 8u442-b06~us1-0ubuntu1~18.04 Available with Ubuntu Pro openjdk-8-jre-headless 8u442-b06~us1-0ubuntu1~18.04 Available with Ubuntu Pro openjdk-8-jre-zero 8u442-b06~us1-0ubuntu1~18.04 Available with Ubuntu Pro Ubuntu 16.04 LTS openjdk-8-jdk 8u442-b06~us1-0ubuntu1~16.04 Available with Ubuntu Pro openjdk-8-jdk-headless 8u442-b06~us1-0ubuntu1~16.04 Available with Ubuntu Pro openjdk-8-jre 8u442-b06~us1-0ubuntu1~16.04 Available with Ubuntu Pro openjdk-8-jre-headless 8u442-b06~us1-0ubuntu1~16.04 Available with Ubuntu Pro openjdk-8-jre-jamvm 8u442-b06~us1-0ubuntu1~16.04 Available with Ubuntu Pro openjdk-8-jre-zero 8u442-b06~us1-0ubuntu1~16.04 Available with Ubuntu Pro This update uses a new upstream release, which includes additional bug fixes. After a standard system update you need to restart Java applications to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7096-2 https://ubuntu.com/security/notices/USN-7096-1 https://bugs.launchpad.net/ubuntu/+source/openjdk-8/+bug/2097400 Package Information: https://launchpad.net/ubuntu/+source/openjdk-8/8u442-b06~us1-0ubuntu1~24.10 https://launchpad.net/ubuntu/+source/openjdk-8/8u442-b06~us1-0ubuntu1~24.04 https://launchpad.net/ubuntu/+source/openjdk-8/8u442-b06~us1-0ubuntu1~22.04 https://launchpad.net/ubuntu/+source/openjdk-8/8u442-b06~us1-0ubuntu1~20.04 . Fortify your Linux environment by applying the OpenJDK 8 patch that resolves significant vulnerabilities impacting various iterations.. Ubuntu OpenJDK security advisory. . LinuxSecurity.com Team
USN-6992-1 caused some minor regressions in Firefox.. ========================================================================== Ubuntu Security Notice USN-6992-2 September 23, 2024 firefox regressions ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: USN-6992-1 caused some minor regressions in Firefox. Software Description: - firefox: Mozilla Open Source web browser Details: USN-6992-1 fixed vulnerabilities in Firefox. The update introduced several minor regressions. This update fixes the problem. We apologize for the inconvenience. Original advisory details: Multiple security issues were discovered in Firefox. If a user were tricked into opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, obtain sensitive information across domains, or execute arbitrary code. (CVE-2024-8382, CVE-2024-8383, CVE-2024-8386, CVE-2024-8387, CVE-2024-8389) Nils Bars discovered that Firefox contained a type confusion vulnerability when performing certain property name lookups. An attacker could potentially exploit this issue to cause a denial of service, or execute arbitrary code. (CVE-2024-8381) It was discovered that Firefox did not properly manage memory during garbage collection. An attacker could potentially exploit this issue to cause a denial of service, or execute arbitrary code. (CVE-2024-8384) Seunghyun Lee discovered that Firefox contained a type confusion vulnerability when handling certain ArrayTypes. An attacker could potentially exploit this issue to cause a denial of service, or execute arbitrary code. (CVE-2024-8385) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS firefox 130.0.1+build1-0ubuntu0.20.04.1 After a standardsystem update you need to restart Firefox to make all the necessary changes References: https://ubuntu.com/security/notices/USN-6992-2 https://ubuntu.com/security/notices/USN-6992-1 https://bugs.launchpad.net/ubuntu/+source/firefox/+bug/2081668 Package Information: https://launchpad.net/ubuntu/+source/firefox/130.0.1+build1-0ubuntu0.20.04.1 . Significant revision to Firefox resolves regressions and vulnerabilities highlighted in USN-6992-2 impacting Ubuntu 20.04 LTS.. Ubuntu Firefox Update, Security Advisory, Firefox Vulnerability Fix. . LinuxSecurity.com Team
USN-6779-1 caused some minor regressions in Firefox.. ========================================================================== Ubuntu Security Notice USN-6779-2 May 29, 2024 firefox regressions ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: USN-6779-1 caused some minor regressions in Firefox. Software Description: - firefox: Mozilla Open Source web browser Details: USN-6779-1 fixed vulnerabilities in Firefox. The update introduced several minor regressions. This update fixes the problem. Original advisory details: Multiple security issues were discovered in Firefox. If a user were tricked into opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, obtain sensitive information across domains, or execute arbitrary code. (CVE-2024-4767, CVE-2024-4768, CVE-2024-4769, CVE-2024-4771, CVE-2024-4772, CVE-2024-4773, CVE-2024-4774, CVE-2024-4775, CVE-2024-4776, CVE-2024-4777, CVE-2024-4778) Jan-Ivar Bruaroey discovered that Firefox did not properly manage memory when audio input connected with multiple consumers. An attacker could potentially exploit this issue to cause a denial of service, or execute arbitrary code. (CVE-2024-4764) Thomas Rinsma discovered that Firefox did not properly handle type check when handling fonts in PDF.js. An attacker could potentially exploit this issue to execute arbitrary javascript code in PDF.js. (CVE-2024-4367) Irvan Kurniawan discovered that Firefox did not properly handle certain font styles when saving a page to PDF. An attacker could potentially exploit this issue to cause a denial of service. (CVE-2024-4770) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS firefox 126.0.1+build1-0ubuntu0.20.04.1 After astandard system update you need to restart Firefox to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6779-2 https://ubuntu.com/security/notices/USN-6779-1 https://bugs.launchpad.net/ubuntu/+source/firefox/+bug/2067445 Package Information: . Follow these steps to fix Firefox issues on Ubuntu 20.04 LTS, ensuring your browser is updated, secure, and functioning smoothly without disruptions. Firefox Update, Ubuntu Security, Web Browser Fixes, Security Issues. . LinuxSecurity.com Team
USN-6710-1 caused some minor regressions in Firefox.. ========================================================================== Ubuntu Security Notice USN-6710-2 April 04, 2024 firefox regressions ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: USN-6710-1 caused some minor regressions in Firefox. Software Description: - firefox: Mozilla Open Source web browser Details: USN-6710-1 fixed vulnerabilities in Firefox. The update introduced several minor regressions. This update fixes the problem. Original advisory details: Manfred Paul discovered that Firefox did not properly perform bounds checking during range analysis, leading to an out-of-bounds write vulnerability. A attacker could use this to cause a denial of service, or execute arbitrary code. (CVE-2024-29943) Manfred Paul discovered that Firefox incorrectly handled MessageManager listeners under certain circumstances. An attacker who was able to inject an event handler into a privileged object may have been able to execute arbitrary code. (CVE-2024-29944) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: firefox 124.0.2+build1-0ubuntu0.20.04.1 After a standard system update you need to restart Firefox to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6710-2 https://ubuntu.com/security/notices/USN-6710-1 Package Information: https://launchpad.net/ubuntu/+source/firefox/124.0.2+build1-0ubuntu0.20.04.1 . Address small inconsistencies in Firefox stemming from USN-6710-1 through this Ubuntu security advisory rectification.. firefox regression, ubuntu security update, out of bounds write. . LinuxSecurity.com Team
USN-6143-1 caused some minor regressions in Firefox.. =========================================================================Ubuntu Security Notice USN-6143-2 June 13, 2023 firefox regressions ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: USN-6143-1 caused some minor regressions in Firefox. Software Description: - firefox: Mozilla Open Source web browser Details: USN-6143-1 fixed vulnerabilities in Firefox. The update introduced several minor regressions. This update fixes the problem. We apologize for the inconvenience. Original advisory details: Multiple security issues were discovered in Firefox. If a user were tricked into opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, obtain sensitive information across domains, or execute arbitrary code. (CVE-2023-34414, CVE-2023-34416, CVE-2023-34417) Jun Kokatsu discovered that Firefox did not properly validate site-isolated process for a document loaded from a data: URL that was the result of a redirect, leading to an open redirect attack. An attacker could possibly use this issue to perform phishing attacks. (CVE-2023-34415) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: firefox 114.0.1+build1-0ubuntu0.20.04.1 After a standard system update you need to restart Firefox to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6143-2 https://ubuntu.com/security/notices/USN-6143-1 https://bugs.launchpad.net/ubuntu/+source/firefox/+bug/2023610 Package Information: https://launchpad.net/ubuntu/+source/firefox/114.0.1+build1-0ubuntu0.20.04.1 . Announcement regarding Firefox issues stemming from Ubuntu USN-6143-1, correcting function and security setbacks in thebrowser.. Firefox Update, Ubuntu Security, Regression Issues, Open Source Browser. . Severity: Critical. LinuxSecurity.com Team
USN-5880-1 caused some minor regressions in Firefox.. =========================================================================Ubuntu Security Notice USN-5880-2 March 01, 2023 firefox regressions ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: USN-5880-1 caused some minor regressions in Firefox. Software Description: - firefox: Mozilla Open Source web browser Details: USN-5880-1 fixed vulnerabilities in Firefox. The update introduced several minor regressions. This update fixes the problem. We apologize for the inconvenience. Original advisory details: Christian Holler discovered that Firefox did not properly manage memory when using PKCS 12 Safe Bag attributes. An attacker could construct a PKCS 12 cert bundle in such a way that could allow for arbitrary memory writes. (CVE-2023-0767) Johan Carlsson discovered that Firefox did not properly manage child iframe's unredacted URI when using Content-Security-Policy-Report-Only header. An attacker could potentially exploits this to obtain sensitive information. (CVE-2023-25728) Vitor Torres discovered that Firefox did not properly manage permissions of extensions interaction via ExpandedPrincipals. An attacker could potentially exploits this issue to download malicious files or execute arbitrary code. (CVE-2023-25729) Irvan Kurniawan discovered that Firefox did not properly validate background script invoking requestFullscreen. An attacker could potentially exploit this issue to perform spoofing attacks. (CVE-2023-25730) Ronald Crane discovered that Firefox did not properly manage memory when using EncodeInputStream in xpcom. An attacker could potentially exploits this issue to cause a denial of service. (CVE-2023-25732) Samuel Grob discovered that Firefox did not properly manage memory when using wrappers wrapping a scripted proxy. Anattacker could potentially exploits this issue to cause a denial of service. (CVE-2023-25735) Holger Fuhrmannek discovered that Firefox did not properly manage memory when using Module load requests. An attacker could potentially exploits this issue to cause a denial of service. (CVE-2023-25739) Multiple security issues were discovered in Firefox. If a user were tricked into opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, obtain sensitive information across domains, or execute arbitrary code. (CVE-2023-25731, CVE-2023-25733, CVE-2023-25736, CVE-2023-25737, CVE-2023-25741, CVE-2023-25742, CVE-2023-25744, CVE-2023-25745) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: firefox 110.0.1+build2-0ubuntu0.20.04.1 Ubuntu 18.04 LTS: firefox 110.0.1+build2-0ubuntu0.18.04.1 After a standard system update you need to restart Firefox to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-5880-2 https://ubuntu.com/security/notices/USN-5880-1 https://bugs.launchpad.net/ubuntu/+source/firefox/+bug/2008861 Package Information: https://launchpad.net/ubuntu/+source/firefox/110.0.1+build2-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/firefox/110.0.1+build2-0ubuntu0.18.04.1 . Subtle setbacks in Firefox resolved in Ubuntu Security Notice USN-5880-2 following remedy for security flaws.. Firefox Updates, Ubuntu Security Notice, Memory Management Issues. . LinuxSecurity.com Team
USN-5782-1 caused some minor regressions in Firefox.. =========================================================================Ubuntu Security Notice USN-5782-3 January 10, 2023 firefox regressions ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: USN-5782-1 caused some minor regressions in Firefox. Software Description: - firefox: Mozilla Open Source web browser Details: USN-5782-1 fixed vulnerabilities in Firefox. The update introduced several minor regressions. This update fixes the problem. We apologize for the inconvenience. Original advisory details: It was discovered that Firefox was using an out-of-date libusrsctp library. An attacker could possibly use this library to perform a reentrancy issue on Firefox. (CVE-2022-46871) Nika Layzell discovered that Firefox was not performing a check on paste received from cross-processes. An attacker could potentially exploit this to obtain sensitive information. (CVE-2022-46872) Pete Freitag discovered that Firefox did not implement the unsafe-hashes CSP directive. An attacker who was able to inject markup into a page otherwise protected by a Content Security Policy may have been able to inject an executable script. (CVE-2022-46873) Matthias Zoellner discovered that Firefox was not keeping the filename ending intact when using the drag-and-drop event. An attacker could possibly use this issue to add a file with a malicious extension, leading to execute arbitrary code. (CVE-2022-46874) Hafiizh discovered that Firefox was not handling fullscreen notifications when the browser window goes into fullscreen mode. An attacker could possibly use this issue to spoof the user and obtain sensitive information. (CVE-2022-46877) Multiple security issues were discovered in Firefox. If a user were tricked into opening a specially crafted website, anattacker could potentially exploit these to cause a denial of service, obtain sensitive information across domains, or execute arbitrary code. (CVE-2022-46878, CVE-2022-46879) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: firefox 108.0.2+build1-0ubuntu0.20.04.1 Ubuntu 18.04 LTS: firefox 108.0.2+build1-0ubuntu0.18.04.1 After a standard system update you need to restart Firefox to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-5782-3 https://ubuntu.com/security/notices/USN-5782-1 https://bugs.launchpad.net/ubuntu/+source/firefox/+bug/2002377 Package Information: https://launchpad.net/ubuntu/+source/firefox/108.0.2+build1-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/firefox/108.0.2+build1-0ubuntu0.18.04.1 . Recent updates for Ubuntu 20.04 and 18.04 LTS have resolved slight Firefox regressions. Discover the improvements and the challenges faced during this process.. Firefox Updates, Ubuntu Security, Firefox Issues. . LinuxSecurity.com Team
USN-4546-1 caused some minor regressions in Firefox.. =========================================================================Ubuntu Security Notice USN-4546-2 October 15, 2020 firefox regressions ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: USN-4546-1 caused some minor regressions in Firefox. Software Description: - firefox: Mozilla Open Source web browser Details: USN-4546-1 fixed vulnerabilities in Firefox. The update introduced various minor regressions. This update fixes the problem. We apologize for the inconvenience. Original advisory details: Multiple security issues were discovered in Firefox. If a user were tricked in to opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, conduct cross-site scripting (XSS) attacks, spoof the site displayed in the download dialog, or execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: firefox 81.0.2+build1-0ubuntu0.20.04.1 Ubuntu 18.04 LTS: firefox 81.0.2+build1-0ubuntu0.18.04.1 Ubuntu 16.04 LTS: firefox 81.0.2+build1-0ubuntu0.16.04.1 After a standard system update you need to restart Firefox to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4546-1 https://bugs.launchpad.net/ubuntu/+source/firefox/+bug/1900032 Package Information: https://launchpad.net/ubuntu/+source/firefox/81.0.2+build1-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/firefox/81.0.2+build1-0ubuntu0.18.04.1 https://launchpad.net/ubuntu/+source/firefox/81.0.2+build1-0ubuntu0.16.04.1 . Tackling slight downgrades in Firefox following safety patches on Ubuntu platformsto facilitate prompt fixes.. firefox security, ubuntu firefox update, linux browser security, open source software update. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.