Lucene search

K
altlinuxHttps://packages.altlinux.org/en/sisyphus/security/AA6A526204768E346ED81FF0FBCDB0FD
HistoryMay 09, 2018 - 12:00 a.m.

Security fix for the ALT Linux 10 package firefox-esr version 52.8.0-alt1

2018-05-0900:00:00
https://packages.altlinux.org/en/sisyphus/security/
packages.altlinux.org
1

0.122 Low

EPSS

Percentile

95.4%

May 9, 2018 Andrey Cherepanov 52.8.0-alt1

- New ESR version (52.8.0).
- Fixes:
  + CVE-2018-5183 Backport critical security fixes in Skia
  + CVE-2018-5154 Use-after-free with SVG animations and clip paths
  + CVE-2018-5155 Use-after-free with SVG animations and text paths
  + CVE-2018-5157 Same-origin bypass of PDF Viewer to view protected PDF files
  + CVE-2018-5158 Malicious PDF can inject JavaScript into PDF Viewer
  + CVE-2018-5159 Integer overflow and out-of-bounds write in Skia
  + CVE-2018-5168 Lightweight themes can be installed without user interaction
  + CVE-2018-5178 Buffer overflow during UTF-8 to Unicode string conversion through legacy extension
  + CVE-2018-5150 Memory safety bugs fixed in Firefox 60 and Firefox ESR 52.8