Lucene search

K
suseSuseOPENSUSE-SU-2014:0419-1
HistoryMar 21, 2014 - 11:04 p.m.

Mozilla updates 2014/03 (important)

2014-03-2123:04:31
lists.opensuse.org
30

0.956 High

EPSS

Percentile

99.4%

This patch contains a collection of security relevant
updates for Mozilla applications.

Update Firefox to 24.4.0 (bnc#868603) Update Thunderbird to
24.4.0 Update NSPR to 4.10.4 Update NSS to 3.15.5

  • MFSA 2014-15/CVE-2014-1493/CVE-2014-1494 Miscellaneous
    memory safety hazards
  • MFSA 2014-17/CVE-2014-1497 (bmo#966311) Out of bounds
    read during WAV file decoding
  • MFSA 2014-26/CVE-2014-1508 (bmo#963198) Information
    disclosure through polygon rendering in MathML
  • MFSA 2014-27/CVE-2014-1509 (bmo#966021) Memory
    corruption in Cairo during PDF font rendering
  • MFSA 2014-28/CVE-2014-1505 (bmo#941887) SVG filters
    information disclosure through feDisplacementMap
  • MFSA 2014-29/CVE-2014-1510/CVE-2014-1511 (bmo#982906,
    bmo#982909) Privilege escalation using
    WebIDL-implemented APIs
  • MFSA 2014-30/CVE-2014-1512 (bmo#982957) Use-after-free
    in TypeObject
  • MFSA 2014-31/CVE-2014-1513 (bmo#982974) Out-of-bounds
    read/write through neutering ArrayBuffer objects
  • MFSA 2014-32/CVE-2014-1514 (bmo#983344) Out-of-bounds
    write through TypedArrayObject after neutering