SUSE-SU-2019:14246-1

Advisory lineage Upstream: 118 Downstream: 0
Published: 17 Jan 2020, 17:07
Last modified:04 Feb 2026, 02:31

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

17 Jan 2020, 17:07
Published
Vulnerability first disclosed
04 Feb 2026, 02:31
Last Modified
Vulnerability information updated

Description

Security update for Mozilla Firefox This update contains the Mozilla Firefox ESR 68.2 release. Mozilla Firefox was updated to ESR 68.2 release: * Enterprise: New administrative policies were added. More information and templates are available at the Policy Templates page. * Various security fixes: MFSA 2019-33 (bsc#1154738) * CVE-2019-15903: Heap overflow in expat library in XML_GetCurrentLineNumber * CVE-2019-11757: Use-after-free when creating index updates in IndexedDB * CVE-2019-11758: Potentially exploitable crash due to 360 Total Security * CVE-2019-11759: Stack buffer overflow in HKDF output * CVE-2019-11760: Stack buffer overflow in WebRTC networking * CVE-2019-11761: Unintended access to a privileged JSONView object * CVE-2019-11762: document.domain-based origin isolation has same-origin- property violation * CVE-2019-11763: Incorrect HTML parsing results in XSS bypass technique * CVE-2019-11764: Memory safety bugs fixed in Firefox 70 and Firefox ESR 68.2 Other Issues resolved: * [bsc#1104841] Newer versions of firefox have a dependency on GLIBCXX_3.4.20 * [bsc#1074235] MozillaFirefox: background tab crash reports sent inadvertently without user opt-in * [bsc#1043008] Firefox hangs randomly when browsing and scrolling * [bsc#1025108] Firefox stops loading page until mouse is moved * [bsc#905528] Firefox malfunctions due to broken omni.ja archives

Affected Systems

  • susefirefox-atk&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 2.26.1-2.8.4

  • susefirefox-cairo&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 1.15.10-2.13.4

  • susefirefox-gdk-pixbuf&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 2.36.11-2.8.4

  • susefirefox-glib2&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 2.54.3-2.14.7

  • susefirefox-gtk3&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 3.10.9-2.15.3

  • susefirefox-harfbuzz&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 1.7.5-2.7.4

  • susefirefox-libffi-gcc5&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 5.3.1+r233831-14.1

  • susefirefox-libffi&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 3.2.1.git259-2.3.3

  • susefirefox-pango&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 1.40.14-2.7.4

  • susemozilla-nspr&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 4.21-29.6.1

  • susemozilla-nss&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 3.45-38.9.3

  • suseMozillaFirefox-branding-SLED&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 68-21.9.8

  • suseMozillaFirefox&distro=SUSE Linux Enterprise Server 11 SP4-LTSS

    < 68.2.0-78.51.4

References (230)