Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.842785
Category:Ubuntu Local Security Checks
Title:Ubuntu: Security Advisory (USN-2993-1)
Summary:The remote host is missing an update for the 'firefox' package(s) announced via the USN-2993-1 advisory.
Description:Summary:
The remote host is missing an update for the 'firefox' package(s) announced via the USN-2993-1 advisory.

Vulnerability Insight:
Christian Holler, Gary Kwong, Jesse Ruderman, Tyson Smith, Timothy Nikkel,
Sylvestre Ledru, Julian Seward, Olli Pettay, Karl Tomlinson, Christoph
Diehl, Julian Hector, Jan de Mooij, Mats Palmgren, and Tooru Fujisawa
discovered multiple memory safety issues in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code. (CVE-2016-2815, CVE-2016-2818)

A buffer overflow was discovered when parsing HTML5 fragments in some
circumstances. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit this to cause a denial of
service via application crash, or execute arbitrary code. (CVE-2016-2819)

A use-after-free was discovered in contenteditable mode in some
circumstances. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit this to cause a denial of
service via application crash, or execute arbitrary code. (CVE-2016-2821)

Jordi Chancel discovered a way to use a persistent menu within a
Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2016-2815
BugTraq ID: 91075
http://www.securityfocus.com/bid/91075
http://www.securitytracker.com/id/1036057
SuSE Security Announcement: SUSE-SU-2016:1691 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00055.html
SuSE Security Announcement: openSUSE-SU-2016:1552 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00014.html
SuSE Security Announcement: openSUSE-SU-2016:1557 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00016.html
SuSE Security Announcement: openSUSE-SU-2016:1767 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00006.html
SuSE Security Announcement: openSUSE-SU-2016:1769 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00007.html
SuSE Security Announcement: openSUSE-SU-2016:1778 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00008.html
http://www.ubuntu.com/usn/USN-2993-1
Common Vulnerability Exposure (CVE) ID: CVE-2016-2818
Debian Security Information: DSA-3600 (Google Search)
http://www.debian.org/security/2016/dsa-3600
Debian Security Information: DSA-3647 (Google Search)
http://www.debian.org/security/2016/dsa-3647
RedHat Security Advisories: RHSA-2016:1217
https://access.redhat.com/errata/RHSA-2016:1217
RedHat Security Advisories: RHSA-2016:1392
https://access.redhat.com/errata/RHSA-2016:1392
http://www.ubuntu.com/usn/USN-3023-1
Common Vulnerability Exposure (CVE) ID: CVE-2016-2819
https://www.exploit-db.com/exploits/44293/
Common Vulnerability Exposure (CVE) ID: CVE-2016-2821
Common Vulnerability Exposure (CVE) ID: CVE-2016-2822
Common Vulnerability Exposure (CVE) ID: CVE-2016-2825
Common Vulnerability Exposure (CVE) ID: CVE-2016-2828
Common Vulnerability Exposure (CVE) ID: CVE-2016-2829
Common Vulnerability Exposure (CVE) ID: CVE-2016-2831
Common Vulnerability Exposure (CVE) ID: CVE-2016-2832
Common Vulnerability Exposure (CVE) ID: CVE-2016-2833
Common Vulnerability Exposure (CVE) ID: CVE-2016-2834
BugTraq ID: 91072
http://www.securityfocus.com/bid/91072
Debian Security Information: DSA-3688 (Google Search)
http://www.debian.org/security/2016/dsa-3688
RedHat Security Advisories: RHSA-2016:2779
http://rhn.redhat.com/errata/RHSA-2016-2779.html
http://www.ubuntu.com/usn/USN-3029-1
CopyrightCopyright (C) 2016 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.