1
0
MozillaFirefox/firefox-74.0.source.tar.xz.asc
Wolfgang Rosenauer a9628fa6ae - Mozilla Firefox 74.0
* https://www.mozilla.org/en-US/firefox/74.0/releasenotes/
  MFSA 2020-08 (bsc#1166238)
  * CVE-2020-6805 (bmo#1610880)
    Use-after-free when removing data about origins
  * CVE-2020-6806 (bmo#1612308)
    BodyStream::OnInputStreamReady was missing protections against
    state confusion
  * CVE-2020-6807 (bmo#1614971)
    Use-after-free in cubeb during stream destruction
  * CVE-2020-6808 (bmo#1247968)
    URL Spoofing via javascript: URL
  * CVE-2020-6809 (bmo#1420296)
    Web Extensions with the all-urls permission could access local
    files
  * CVE-2020-6810 (bmo#1432856)
    Focusing a popup while in fullscreen could have obscured the
    fullscreen notification
  * CVE-2020-6811 (bmo#1607742)
    Devtools' 'Copy as cURL' feature did not fully escape
    website-controlled data, potentially leading to command injection
  * CVE-2019-20503 (bmo#1613765)
    Out of bounds reads in sctp_load_addresses_from_init
  * CVE-2020-6812 (bmo#1616661)
    The names of AirPods with personally identifiable information
    were exposed to websites with camera or microphone permission
  * CVE-2020-6813 (bmo#1605814)
    @import statements in CSS could bypass the Content Security
    Policy nonce feature
  * CVE-2020-6814 (bmo#1592078,bmo#1604847,bmo#1608256,bmo#1612636,

OBS-URL: https://build.opensuse.org/package/show/mozilla:Factory/MozillaFirefox?expand=0&rev=809
2020-03-12 19:14:24 +00:00

17 lines
833 B
Plaintext

-----BEGIN PGP SIGNATURE-----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=tfW0
-----END PGP SIGNATURE-----