Lucene search

K
altlinuxHttps://packages.altlinux.org/en/sisyphus/security/419524F1712F2776FD9563363469310C
HistoryJan 22, 2018 - 12:00 a.m.

Security fix for the ALT Linux 10 package firefox-esr version 52.6.0-alt1

2018-01-2200:00:00
https://packages.altlinux.org/en/sisyphus/security/
packages.altlinux.org
10

0.009 Low

EPSS

Percentile

82.7%

Jan. 22, 2018 Andrey Cherepanov 52.6.0-alt1

- New ESR version (52.6.0)
- Fixes:
  + CVE-2018-5095 Integer overflow in Skia library during edge builder allocation
  + CVE-2018-5096 Use-after-free while editing form elements
  + CVE-2018-5097 Use-after-free when source document is manipulated during XSLT
  + CVE-2018-5098 Use-after-free while manipulating form input elements
  + CVE-2018-5099 Use-after-free with widget listener
  + CVE-2018-5102 Use-after-free in HTML media elements
  + CVE-2018-5103 Use-after-free during mouse event handling
  + CVE-2018-5104 Use-after-free during font face manipulation
  + CVE-2018-5117 URL spoofing with right-to-left text aligned left-to-right
  + CVE-2018-5089 Memory safety bugs fixed in Firefox 58 and Firefox ESR 52.6
- Continue fix of Speculative execution side-channel attack ("Spectre")