Lucene search

K
altlinuxHttps://packages.altlinux.org/en/sisyphus/security/909AD112600F4B7C9F7BE0EA6049CD74
HistoryOct 27, 2019 - 12:00 a.m.

Security fix for the ALT Linux 10 package firefox-esr version 68.2.0-alt1

2019-10-2700:00:00
https://packages.altlinux.org/en/sisyphus/security/
packages.altlinux.org
7

0.015 Low

EPSS

Percentile

86.9%

Oct. 27, 2019 Andrey Cherepanov 68.2.0-alt1

- New ESR version (68.2.0).
- Fixed:
  + CVE-2019-15903 Heap overflow in expat library in XML_GetCurrentLineNumber
  + CVE-2019-11757 Use-after-free when creating index updates in IndexedDB
  + CVE-2019-11758 Potentially exploitable crash due to 360 Total Security
  + CVE-2019-11759 Stack buffer overflow in HKDF output
  + CVE-2019-11760 Stack buffer overflow in WebRTC networking
  + CVE-2019-11761 Unintended access to a privileged JSONView object
  + CVE-2019-11762 document.domain-based origin isolation has same-origin-property violation
  + CVE-2019-11763 Incorrect HTML parsing results in XSS bypass technique
  + CVE-2019-11764 Memory safety bugs fixed in Firefox 70 and Firefox ESR 68.2