Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.884282
Kategorie:CentOS Local Security Checks
Titel:CentOS: Security Advisory for firefox (CESA-2023:1333)
Zusammenfassung:The remote host is missing an update for the 'firefox'; package(s) announced via the CESA-2023:1333 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'firefox'
package(s) announced via the CESA-2023:1333 advisory.

Vulnerability Insight:
Mozilla Firefox is an open-source web browser, designed for standards
compliance, performance, and portability.

This update upgrades Firefox to version 102.9.0 ESR.

Security Fix(es):

* Mozilla: Incorrect code generation during JIT compilation
(CVE-2023-25751)

* Mozilla: Memory safety bugs fixed in Firefox 111 and Firefox ESR 102.9
(CVE-2023-28176)

* Mozilla: Potential out-of-bounds when accessing throttled streams
(CVE-2023-25752)

* Mozilla: Invalid downcast in Worklets (CVE-2023-28162)

* Mozilla: URL being dragged from a removed cross-origin iframe into the
same tab triggered navigation (CVE-2023-28164)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.

Affected Software/OS:
'firefox' package(s) on CentOS 7.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2023-25751
https://bugzilla.mozilla.org/show_bug.cgi?id=1814899
https://www.mozilla.org/security/advisories/mfsa2023-09/
https://www.mozilla.org/security/advisories/mfsa2023-10/
https://www.mozilla.org/security/advisories/mfsa2023-11/
Common Vulnerability Exposure (CVE) ID: CVE-2023-25752
https://bugzilla.mozilla.org/show_bug.cgi?id=1811627
Common Vulnerability Exposure (CVE) ID: CVE-2023-28162
https://bugzilla.mozilla.org/show_bug.cgi?id=1811327
Common Vulnerability Exposure (CVE) ID: CVE-2023-28164
https://bugzilla.mozilla.org/show_bug.cgi?id=1809122
Common Vulnerability Exposure (CVE) ID: CVE-2023-28176
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1808352%2C1811637%2C1815904%2C1817442%2C1818674
CopyrightCopyright (C) 2023 Greenbone AG

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.