Updated firefox and thunderbird packages fixes security vulnerabilities
Publication date: 17 Jan 2015Modification date: 17 Jan 2015
Type: security
Affected Mageia releases : 4
CVE: CVE-2014-8634 , CVE-2014-8638 , CVE-2014-8639 , CVE-2014-8641
Description
Several flaws were found in the processing of malformed web content. A web page containing malicious content could cause Firefox or Thunderbird to crash or, potentially, execute arbitrary code with the privileges of the user running it (CVE-2014-8634). It was found that the Beacon interface implementation in Firefox and Thunderbird did not follow the Cross-Origin Resource Sharing (CORS) specification. A web page containing malicious content could allow a remote attacker to conduct a Cross-Site Request Forgery (XSRF) attack (CVE-2014-8638). It was found that a Web Proxy returning a 407 Proxy Authentication response with a Set-Cookie header could inject cookies into the originally requested domain. This could be used for session-fixation attacks. This attack only allows cookies to be written but does not allow them to be read (CVE-2014-8639). Security researcher Mitchell Harper discovered a read-after-free in WebRTC due to the way tracks are handled. This results in a either a potentially exploitable crash or incorrect WebRTC behavior. Note that this issue only affects Firefox (CVE-2014-8641).
References
- https://bugs.mageia.org/show_bug.cgi?id=15040
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-01/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-03/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-04/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-06/
- https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-esr/
- https://www.mozilla.org/en-US/security/known-vulnerabilities/thunderbird/
- https://rhn.redhat.com/errata/RHSA-2015-0046.html
- https://rhn.redhat.com/errata/RHSA-2015-0047.html
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8634
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8638
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8639
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8641
SRPMS
4/core
- firefox-31.4.0-1.mga4
- firefox-l10n-31.4.0-1.mga4
- thunderbird-31.4.0-1.mga4
- thunderbird-l10n-31.4.0-1.mga4