From 7baf69564d8804275ed39f9527422cbf060dcfc9 Mon Sep 17 00:00:00 2001 From: GLSAMaker Date: Sun, 5 May 2024 08:35:38 +0000 Subject: [ GLSA 202405-15 ] Mozilla Firefox: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/925122 Signed-off-by: GLSAMaker Signed-off-by: Hans de Graaff --- glsa-202405-15.xml | 82 ++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 82 insertions(+) create mode 100644 glsa-202405-15.xml diff --git a/glsa-202405-15.xml b/glsa-202405-15.xml new file mode 100644 index 00000000..3e9f5e37 --- /dev/null +++ b/glsa-202405-15.xml @@ -0,0 +1,82 @@ + + + + Mozilla Firefox: Multiple Vulnerabilities + Multiple vulnerabilities have been discovered in Mozilla Firefox, the worst of which can lead to remote code execution. + firefox,firefox-bin + 2024-05-05 + 2024-05-05 + 925122 + remote + + + 123.0 + 115.8.0 + 123.0 + 115.8.0 + + + 123.0 + 115.8.0 + 123.0 + 115.8.0 + + + +

Mozilla Firefox is a popular open-source web browser from the Mozilla project.

+
+ +

Multiple vulnerabilities have been discovered in Mozilla Firefox. Please review the CVE identifiers referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All Mozilla Firefox rapid release users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=www-client/firefox-bin-123.0" + + +

All Mozilla Firefox users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=www-client/firefox-123.0" + + +

All Mozilla Firefox ESR users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=www-client/firefox-bin-115.8.0:esr" + + +

All Mozilla Firefox users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=www-client/firefox-115.8.0:esr" + +
+ + CVE-2024-1546 + CVE-2024-1547 + CVE-2024-1548 + CVE-2024-1549 + CVE-2024-1550 + CVE-2024-1551 + CVE-2024-1552 + CVE-2024-1553 + CVE-2024-1554 + CVE-2024-1555 + CVE-2024-1556 + CVE-2024-1557 + + graaff + graaff +
\ No newline at end of file -- cgit v1.2.3-65-gdbad