rpm package
suse/mozilla-nss&distro=SUSE OpenStack Cloud 8
pkg:rpm/suse/mozilla-nss&distro=SUSE%20OpenStack%20Cloud%208
Vulnerabilities (22)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2019-11711 | Hig | 8.8 | < 3.44.1-58.28.1 | 3.44.1-58.28.1 | Jul 23, 2019 | When an inner window is reused, it does not consider the use of document.domain for cross-origin protections. If pages on different subdomains ever cooperatively use document.domain, then either page can abuse this to inject script into arbitrary pages on the other subdomain, eve | |
| CVE-2019-11709 | Cri | 9.8 | < 3.44.1-58.28.1 | 3.44.1-58.28.1 | Jul 23, 2019 | Mozilla developers and community members reported memory safety bugs present in Firefox 67 and Firefox ESR 60.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulner |
- affected < 3.44.1-58.28.1fixed 3.44.1-58.28.1
When an inner window is reused, it does not consider the use of document.domain for cross-origin protections. If pages on different subdomains ever cooperatively use document.domain, then either page can abuse this to inject script into arbitrary pages on the other subdomain, eve
- affected < 3.44.1-58.28.1fixed 3.44.1-58.28.1
Mozilla developers and community members reported memory safety bugs present in Firefox 67 and Firefox ESR 60.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulner
Page 2 of 2