Security update for MozillaFirefox
This update for MozillaFirefox to version 60.5.0esr fixes the following issues: Security issues fixed: - CVE-2018-18500: Fixed a use-after-free parsing HTML5 stream (boo#1122983). - CVE-2018-18505: Fixed a privilege escalation through IPC channel messages (boo#1122983). - CVE-2018-18501: Fixed multiple memory safety bugs (boo#1122983).
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for MozillaFirefox to version 60.5.0esr fixes the following issues: Security issues fixed: - CVE-2018-18500: Fixed a use-after-free parsing HTML5 stream (boo#1122983). - CVE-2018-18505: Fixed a privilege escalation through IPC channel messages (boo#1122983). - CVE-2018-18501: Fixed multiple memory safety bugs (boo#1122983).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1122983
- https://lists.opensuse.org/archives/list/[email protected]/thread/OWRMCVMFUQAET2SE7IUYHIVUEQKIBNAH/#OWRMCVMFUQAET2SE7IUYHIVUEQKIBNAH
- https://www.suse.com/security/cve/CVE-2018-18500
- https://www.suse.com/security/cve/CVE-2018-18501
- https://www.suse.com/security/cve/CVE-2018-18505