OESA-2021-1103
Dashboard / Vulnerabilities / OESA-2021-1103
Summary: firefox security update
Details: Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability. Security Fix(es): Use after free in WebRTC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.(CVE-2020-15969) Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.(CVE-2020-15999)
References: https://openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2021-1103, https://nvd.nist.gov/vuln/detail/CVE-2020-15969, https://nvd.nist.gov/vuln/detail/CVE-2020-15999
Affected packages
Package
Name: firefox
Purl: pkg:rpm/openEuler/firefox&distro=openEuler-20.03-LTS
Affected ranges
Type: ECOSYSTEM
Events:
