openSUSE Security Update : MozillaFirefox (openSUSE-2019-1534)

critical Nessus Plugin ID 125809

Language:

New! Plugin Severity Now Using CVSS v3

The calculated severity for Plugins has been updated to use CVSS v3 by default. Plugins that do not have a CVSS v3 score will fall back to CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Synopsis

The remote openSUSE host is missing a security update.

Description

This update for MozillaFirefox fixes the following issues :

MozillaFirefox was updated to 60.7.0esr (boo#1135824 MFSA 2019-14) :

- CVE-2018-18511: Cross-origin theft of images with ImageBitmapRenderingContext

- CVE-2019-11691: Use-after-free in XMLHttpRequest

- CVE-2019-11692: Use-after-free removing listeners in the event listener manager

- CVE-2019-11693: Buffer overflow in WebGL bufferdata on Linux

- CVE-2019-11694: (Windows only) Uninitialized memory memory leakage in Windows sandbox

- CVE-2019-11698: Theft of user history data through drag and drop of hyperlinks to and from bookmarks

- CVE-2019-5798: Out-of-bounds read in Skia

- CVE-2019-7317: Use-after-free in png_image_free of libpng library

- CVE-2019-9797: Cross-origin theft of images with createImageBitmap

- CVE-2019-9800: Memory safety bugs fixed in Firefox 67 and Firefox ESR 60.7

- CVE-2019-9815: Disable hyperthreading on content JavaScript threads on macOS

- CVE-2019-9816: Type confusion with object groups and UnboxedObjects

- CVE-2019-9817: Stealing of cross-domain images using canvas

- CVE-2019-9818: (Windows only) Use-after-free in crash generation server

- CVE-2019-9819: Compartment mismatch with fetch API

- CVE-2019-9820: Use-after-free of ChromeEventHandler by DocShell

- CVE-2019-9821: Use-after-free in AssertWorkerThread

Solution

Update the affected MozillaFirefox packages.

See Also

https://bugzilla.opensuse.org/show_bug.cgi?id=1135824

Plugin Details

Severity: Critical

ID: 125809

File Name: openSUSE-2019-1534.nasl

Version: 1.6

Type: local

Agent: unix

Published: 6/11/2019

Updated: 1/19/2021

Dependencies: ssh_get_info.nasl

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: High

Base Score: 7.5

Temporal Score: 5.9

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Temporal Vector: CVSS2#E:POC/RL:OF/RC:C

CVSS v3

Risk Factor: Critical

Base Score: 9.8

Temporal Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

Vulnerability Information

CPE: cpe:2.3:o:novell:opensuse:15.0:*:*:*:*:*:*:*, p-cpe:2.3:a:novell:opensuse:mozillafirefox:*:*:*:*:*:*:*, p-cpe:2.3:a:novell:opensuse:mozillafirefox-branding-upstream:*:*:*:*:*:*:*, p-cpe:2.3:a:novell:opensuse:mozillafirefox-buildsymbols:*:*:*:*:*:*:*, p-cpe:2.3:a:novell:opensuse:mozillafirefox-debuginfo:*:*:*:*:*:*:*, p-cpe:2.3:a:novell:opensuse:mozillafirefox-debugsource:*:*:*:*:*:*:*, p-cpe:2.3:a:novell:opensuse:mozillafirefox-devel:*:*:*:*:*:*:*, p-cpe:2.3:a:novell:opensuse:mozillafirefox-translations-common:*:*:*:*:*:*:*, p-cpe:2.3:a:novell:opensuse:mozillafirefox-translations-other:*:*:*:*:*:*:*

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 6/10/2019

Vulnerability Publication Date: 2/4/2019

Reference Information

CVE: CVE-2019-7317, CVE-2019-9816, CVE-2019-11698, CVE-2019-5798, CVE-2018-18511, CVE-2019-11691, CVE-2019-11692, CVE-2019-11693, CVE-2019-9797, CVE-2019-9800, CVE-2019-9817, CVE-2019-9819, CVE-2019-9820, CVE-2019-11694, CVE-2019-9815, CVE-2019-9818, CVE-2019-9821