← Search the atlas
SUSE-SU-2021:1007-1
Not scored
Security update for MozillaFirefox
This update for MozillaFirefox fixes the following issues:
- Firefox was updated to 78.9.0 ESR (MFSA 2021-11, bsc#1183942)
* CVE-2021-23981: Texture upload into an unbound backing buffer resulted in an out-of-bound read
* CVE-2021-23982: Internal network hosts could have been probed by a malicious webpage
* CVE-2021-23984: Malicious extensions could have spoofed popup information
* CVE-2021-23987: Memory safety bugs
Exploit probability
Not scored
Published
April 1, 2021
Required by
Not available
Last source change
May 2, 2025
02 / AFFECTED SOFTWARE
Affected packages
SUSE:Linux Enterprise Server 15-LTSS
MozillaFirefox
SUSE:Linux Enterprise High Performance Computing 15 SP1-ESPOS
MozillaFirefox
SUSE:Linux Enterprise Server for SAP Applications 15
MozillaFirefox-branding-SLE
SUSE:Enterprise Storage 6
MozillaFirefox-branding-SLE
SUSE:Linux Enterprise Server 15 SP1-BCL
MozillaFirefox
SUSE:Linux Enterprise Server 15-LTSS
MozillaFirefox-branding-SLE
SUSE:Linux Enterprise Server 15 SP1-BCL
MozillaFirefox-branding-SLE
SUSE:Linux Enterprise High Performance Computing 15-LTSS
MozillaFirefox
SUSE:Linux Enterprise High Performance Computing 15-LTSS
MozillaFirefox-branding-SLE
SUSE:Linux Enterprise Server for SAP Applications 15 SP1
mozilla-nspr
SUSE:Linux Enterprise High Performance Computing 15 SP1-LTSS
MozillaFirefox-branding-SLE
SUSE:Linux Enterprise Server for SAP Applications 15
MozillaFirefox
SUSE:Manager Retail Branch Server 4.0
MozillaFirefox-branding-SLE
SUSE:Manager Retail Branch Server 4.0
MozillaFirefox
SUSE:Linux Enterprise High Performance Computing 15 SP1-LTSS
mozilla-nspr
SUSE:Manager Server 4.0
MozillaFirefox
SUSE:Linux Enterprise Server 15 SP1-LTSS
MozillaFirefox
SUSE:Linux Enterprise Server for SAP Applications 15
mozilla-nspr
SUSE:Manager Server 4.0
MozillaFirefox-branding-SLE
SUSE:Linux Enterprise High Performance Computing 15-LTSS
mozilla-nspr
SUSE:Linux Enterprise Server 15 SP1-LTSS
MozillaFirefox-branding-SLE
SUSE:Linux Enterprise Server for SAP Applications 15 SP1
MozillaFirefox-branding-SLE
SUSE:Linux Enterprise Server 15 SP1-BCL
mozilla-nspr
SUSE:Manager Proxy 4.0
MozillaFirefox-branding-SLE
SUSE:Linux Enterprise Micro 5.0
mozilla-nspr
SUSE:Linux Enterprise Server 15-LTSS
mozilla-nspr
SUSE:Linux Enterprise High Performance Computing 15-ESPOS
MozillaFirefox-branding-SLE
SUSE:Manager Server 4.0
mozilla-nspr
SUSE:Linux Enterprise Server for SAP Applications 15 SP1
MozillaFirefox
SUSE:Linux Enterprise High Performance Computing 15 SP1-ESPOS
MozillaFirefox-branding-SLE
SUSE:Linux Enterprise Module for Basesystem 15 SP2
mozilla-nspr
SUSE:Manager Retail Branch Server 4.0
mozilla-nspr
SUSE:Enterprise Storage 6
mozilla-nspr
SUSE:Linux Enterprise Server 15 SP1-LTSS
mozilla-nspr
SUSE:Linux Enterprise High Performance Computing 15-ESPOS
mozilla-nspr
SUSE:Linux Enterprise High Performance Computing 15 SP1-ESPOS
mozilla-nspr
SUSE:Manager Proxy 4.0
MozillaFirefox
SUSE:Manager Proxy 4.0
mozilla-nspr
SUSE:Enterprise Storage 6
MozillaFirefox
SUSE:Linux Enterprise High Performance Computing 15-ESPOS
MozillaFirefox
SUSE:Linux Enterprise High Performance Computing 15 SP1-LTSS
MozillaFirefox
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
SUSE-SU-2021:1007-1
This update for MozillaFirefox fixes the following issues:
- Firefox was updated to 78.9.0 ESR (MFSA 2021-11, bsc#1183942)
* CVE-2021-23981: Texture upload into an unbound backing buffer resulted in an out-of-bound read
* CVE-2021-23982: Internal network hosts could have been probed by a malicious webpage
* CVE-2021-23984: Malicious extensions could have spoofed popup information
* CVE-2021-23987: Memory safety bugs
View original source ↗
05 / REFERENCES
Further evidence