Mozilla Firefox is a standalone web browser, designed for standards compliance and performance. Its functionality can be enhanced via a plethora of extensions.
Security Fix(es):Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability.
Security Fix(es):
When processing surfaces, the lifetime may outlive a persistent buffer leading to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 81.(CVE-2020-15675)
Using the new logical assignment operators in a JavaScript switch statement could have caused a type confusion, leading to a memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 85, Thunderbird < 78.7, and Firefox ESR < 78.7.(CVE-2021-23954)
If an out-of-memory condition occurred when creating a JavaScript global, a JavaScript realm may be deleted while references to it lived on in a BaseShape. This could lead to a use-after-free causing a potentially exploitable crash. This vulnerability affects Firefox ESR < 102.5, Thunderbird < 102.5, and Firefox < 107.(CVE-2022-45406)
{ "severity": "Critical" }
{ "aarch64": [ "firefox-79.0-26.oe2003sp4.aarch64.rpm", "firefox-debuginfo-79.0-26.oe2003sp4.aarch64.rpm", "firefox-debugsource-79.0-26.oe2003sp4.aarch64.rpm" ], "x86_64": [ "firefox-79.0-26.oe2003sp4.x86_64.rpm", "firefox-debuginfo-79.0-26.oe2003sp4.x86_64.rpm", "firefox-debugsource-79.0-26.oe2003sp4.x86_64.rpm", "mozilla-crashreporter-firefox-debuginfo-79.0-26.oe2003sp4.x86_64.rpm" ], "src": [ "firefox-79.0-26.oe2003sp4.src.rpm" ] }