Lucene search

K
altlinuxHttps://packages.altlinux.org/en/sisyphus/security/71C9DC500BA9313FCB791600747BDF62
HistoryDec 05, 2019 - 12:00 a.m.

Security fix for the ALT Linux 10 package firefox-esr version 68.3.0-alt1

2019-12-0500:00:00
https://packages.altlinux.org/en/sisyphus/security/
packages.altlinux.org
15

0.014 Low

EPSS

Percentile

86.4%

Dec. 5, 2019 Andrey Cherepanov 68.3.0-alt1

- New ESR version (68.3.0).
- Fixed:
  + CVE-2019-17008 Use-after-free in worker destruction
  + CVE-2019-13722 Stack corruption due to incorrect number of arguments in WebRTC code
  + CVE-2019-11745 Out of bounds write in NSS when encrypting with a block cipher
  + CVE-2019-17009 Updater temporary files accessible to unprivileged processes
  + CVE-2019-17010 Use-after-free when performing device orientation checks
  + CVE-2019-17005 Buffer overflow in plain text serializer
  + CVE-2019-17011 Use-after-free when retrieving a document in antitracking
  + CVE-2019-17012 Memory safety bugs fixed in Firefox 71 and Firefox ESR 68.3