firefox-115.6.0-1.el9_3.ML.1

エラータID: AXSA:2024-7350:02

Release date: 
Thursday, January 11, 2024 - 00:56
Subject: 
firefox-115.6.0-1.el9_3.ML.1
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

Mozilla Firefox is an open-source web browser, designed for standards
compliance, performance, and portability.

This update upgrades Firefox to version 115.6.0 ESR.

Security Fix(es):

Mozilla: Heap-buffer-overflow affecting WebGL
DrawElementsInstanced method with Mesa VM driver (CVE-2023-6856)
Mozilla: Memory safety bugs fixed in Firefox 121, Firefox ESR 115.6, and
Thunderbird 115.6 (CVE-2023-6864)
Mozilla: Potential exposure of uninitialized data in
EncryptingOutputStream (CVE-2023-6865)
Mozilla: Symlinks may resolve to smaller than expected buffers
(CVE-2023-6857)
Mozilla: Heap buffer overflow in nsTextFragment (CVE-2023-6858)
Mozilla: Use-after-free in PR_GetIdentitiesLayer (CVE-2023-6859)
Mozilla: Potential sandbox escape due to VideoBridge lack of
texture validation (CVE-2023-6860)
Mozilla: Heap buffer overflow affected
nsWindow::PickerOpen(void) in headless mode (CVE-2023-6861)
Mozilla: Use-after-free in nsDNSService (CVE-2023-6862)
Mozilla: Clickjacking permission prompts using the popup transition
(CVE-2023-6867)
Mozilla: Undefined behavior in ShutdownObserver()
(CVE-2023-6863)

CVE(s):
CVE-2023-6856
CVE-2023-6857
CVE-2023-6858
CVE-2023-6859
CVE-2023-6860
CVE-2023-6861
CVE-2023-6862
CVE-2023-6863
CVE-2023-6864
CVE-2023-6865
CVE-2023-6867

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. firefox-115.6.0-1.el9_3.ML.1.src.rpm
    MD5: 4e97efff36b6959c44a15cb388ba00fa
    SHA-256: ff869216b98b20e28662186771080681fb46fe20f95cbb6f551dc9a134dca9d8
    Size: 703.60 MB

Asianux Server 9 for x86_64
  1. firefox-115.6.0-1.el9_3.ML.1.x86_64.rpm
    MD5: 45ae1755568165c7a9345d8edd3f5b37
    SHA-256: 0beda296dd83929a61c6b3874ab09c4ecdc069cd1296405ec5be761e4822465f
    Size: 110.06 MB
  2. firefox-x11-115.6.0-1.el9_3.ML.1.x86_64.rpm
    MD5: 790a978648021995f74f6513287f91c7
    SHA-256: 49b4fd310f506f6362b26df19be0d0419d954a4b55463eba333a9e039af095d8
    Size: 13.94 kB