Advisories ยป MGASA-2020-0161

Updated firefox packages fix security vulnerabilities

Publication date: 05 Apr 2020
Modification date: 05 Apr 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-6819 , CVE-2020-6820

Description

Updated firefox packages fix security vulnerabilities:

Under certain conditions, when running the nsDocShell destructor,
a race condition can cause a use-after-free (CVE-2020-6819).

Under certain conditions, when handling a ReadableStream, a race
condition can cause a use-after-free (CVE-2020-6820).
                

References

SRPMS

7/core