Updated firefox and thunderbird packages fixes security vulnerabilities
Publication date: 17 Jan 2015Modification date: 17 Jan 2015
Type: security
Affected Mageia releases : 4
CVE: CVE-2014-8634 , CVE-2014-8638 , CVE-2014-8639 , CVE-2014-8641
Description
Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox or Thunderbird to
crash or, potentially, execute arbitrary code with the privileges of the
user running it (CVE-2014-8634).
It was found that the Beacon interface implementation in Firefox and
Thunderbird did not follow the Cross-Origin Resource Sharing (CORS)
specification. A web page containing malicious content could allow a remote
attacker to conduct a Cross-Site Request Forgery (XSRF) attack
(CVE-2014-8638).
It was found that a Web Proxy returning a 407 Proxy Authentication response
with a Set-Cookie header could inject cookies into the originally requested
domain. This could be used for session-fixation attacks. This attack only
allows cookies to be written but does not allow them to be read
(CVE-2014-8639).
Security researcher Mitchell Harper discovered a read-after-free in WebRTC
due to the way tracks are handled. This results in a either a potentially
exploitable crash or incorrect WebRTC behavior. Note that this issue only
affects Firefox (CVE-2014-8641).
References
- https://bugs.mageia.org/show_bug.cgi?id=15040
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-01/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-03/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-04/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-06/
- https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-esr/
- https://www.mozilla.org/en-US/security/known-vulnerabilities/thunderbird/
- https://rhn.redhat.com/errata/RHSA-2015-0046.html
- https://rhn.redhat.com/errata/RHSA-2015-0047.html
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8634
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8638
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8639
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8641
SRPMS
4/core
- firefox-31.4.0-1.mga4
- firefox-l10n-31.4.0-1.mga4
- thunderbird-31.4.0-1.mga4
- thunderbird-l10n-31.4.0-1.mga4