VYPR

rpm package

suse/firefox-libffi&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

pkg:rpm/suse/firefox-libffi&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4-LTSS

Vulnerabilities (118)

  • CVE-2019-11748Sep 27, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    WebRTC in Firefox will honor persisted permissions given to sites for access to microphone and camera resources even when in a third-party context. In light of recent high profile vulnerabilities in other software, a decision was made to no longer persist these permissions. This

  • CVE-2019-11749Sep 27, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    A vulnerability exists in WebRTC where malicious web content can use probing techniques on the getUserMedia API using constraints to reveal device properties of cameras on the system without triggering a user prompt or notification. This allows for the potential fingerprinting of

  • CVE-2019-11750Sep 27, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    A type confusion vulnerability exists in Spidermonkey, which results in a non-exploitable crash. This vulnerability affects Firefox < 69 and Firefox ESR < 68.1.

  • CVE-2019-11751Sep 27, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Logging-related command line parameters are not properly sanitized when Firefox is launched by another program, such as when a user clicks on malicious links in a chat application. This can be used to write a log file to an arbitrary location such as the Windows 'Startup' folder.

  • CVE-2019-11752Sep 27, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    It is possible to delete an IndexedDB key value and subsequently try to extract it during conversion. This results in a use-after-free and a potentially exploitable crash. This vulnerability affects Firefox < 69, Thunderbird < 68.1, Thunderbird < 60.9, Firefox ESR < 60.9, and Fir

  • CVE-2019-11753Sep 27, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    The Firefox installer allows Firefox to be installed to a custom user writable location, leaving it unprotected from manipulation by unprivileged users or malware. If the Mozilla Maintenance Service is manipulated to update this unprotected location and the updated maintenance se

  • CVE-2019-15903Sep 4, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    In libexpat before 2.2.8, crafted XML input could fool the parser into changing from DTD parsing to document parsing too early; a consecutive call to XML_GetCurrentLineNumber (or XML_GetCurrentColumnNumber) then resulted in a heap-based buffer over-read.

  • CVE-2019-9518Aug 13, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Some HTTP/2 implementations are vulnerable to a flood of empty frames, potentially leading to a denial of service. The attacker sends a stream of frames with an empty payload and without the end-of-stream flag. These frames can be DATA, HEADERS, CONTINUATION and/or PUSH_PROMISE.

  • CVE-2019-9517Aug 13, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Some HTTP/2 implementations are vulnerable to unconstrained interal data buffering, potentially leading to a denial of service. The attacker opens the HTTP/2 window so the peer can send without constraint; however, they leave the TCP window closed so the peer cannot actually writ

  • CVE-2019-9516Aug 13, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Some HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of service. The attacker sends a stream of headers with a 0-length header name and 0-length header value, optionally Huffman encoded into 1-byte or greater headers. Some implementations a

  • CVE-2019-9515Aug 13, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial of service. The attacker sends a stream of SETTINGS frames to the peer. Since the RFC requires that the peer reply with one acknowledgement per SETTINGS frame, an empty SETTINGS frame

  • CVE-2019-9513Aug 13, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker creates multiple request streams and continually shuffles the priority of the streams in a way that causes substantial churn to the priority tree. This can consu

  • CVE-2019-9512Aug 13, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Some HTTP/2 implementations are vulnerable to ping floods, potentially leading to a denial of service. The attacker sends continual pings to an HTTP/2 peer, causing the peer to build an internal queue of responses. Depending on how efficiently this data is queued, this can consum

  • CVE-2019-9511Aug 13, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization manipulation, potentially leading to a denial of service. The attacker requests a large amount of data from a specified resource over multiple streams. They manipulate window size and

  • CVE-2019-9514Aug 13, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Some HTTP/2 implementations are vulnerable to a reset flood, potentially leading to a denial of service. The attacker opens a number of streams and sends an invalid request over each stream that should solicit a stream of RST_STREAM frames from the peer. Depending on how the peer

  • CVE-2019-9811Jul 23, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    As part of a winning Pwn2Own entry, a researcher demonstrated a sandbox escape by installing a malicious language pack and then opening a browser feature that used the compromised translation. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.

  • CVE-2019-11709Jul 23, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Mozilla developers and community members reported memory safety bugs present in Firefox 67 and Firefox ESR 60.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulner

  • CVE-2019-11710Jul 23, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    Mozilla developers and community members reported memory safety bugs present in Firefox 67. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firef

  • CVE-2019-11711Jul 23, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    When an inner window is reused, it does not consider the use of document.domain for cross-origin protections. If pages on different subdomains ever cooperatively use document.domain, then either page can abuse this to inject script into arbitrary pages on the other subdomain, eve

  • CVE-2019-11712Jul 23, 2019
    affected < 3.2.1.git259-2.3.3fixed 3.2.1.git259-2.3.3

    POST requests made by NPAPI plugins, such as Flash, that receive a status 308 redirect response can bypass CORS requirements. This can allow an attacker to perform Cross-Site Request Forgery (CSRF) attacks. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderb

Page 2 of 6