Advisories ยป MGASA-2019-0060

Updated firefox packages fix security vulnerabilities

Publication date: 03 Feb 2019
Modification date: 03 Feb 2019
Type: security
Affected Mageia releases : 6
CVE: CVE-2018-18500 , CVE-2018-18501 , CVE-2018-18505

Description

Use-after-free parsing HTML5 stream (CVE-2018-18500).

Memory safety bugs fixed in Firefox 65 and Firefox ESR 60.5
(CVE-2018-18501).

Privilege escalation through IPC channel messages (CVE-2018-18505).
                

References

SRPMS

6/core