[ALSA-2024:6681] Important: firefox security update
Type:
security
Severity:
important
Release date:
2024-09-20
Description:
Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. Security Fix(es): * firefox: 115.15/128.2 ESR () * mozilla: Type confusion when looking up a property name in a "with" block (CVE-2024-8381) * mozilla: Internal event interfaces were exposed to web content when browser EventHandler listener callbacks ran (CVE-2024-8382) * mozilla: Firefox did not ask before openings news: links in an external application (CVE-2024-8383) * mozilla: Garbage collection could mis-color cross-compartment objects in OOM conditions (CVE-2024-8384) * mozilla: WASM type confusion involving ArrayTypes (CVE-2024-8385) * mozilla: SelectElements could be shown over another site if popups are allowed (CVE-2024-8386) * mozilla: Memory safety bugs fixed in Firefox 130, Firefox ESR 128.2, and Thunderbird 128.2 (CVE-2024-8387) * mozilla: Type Confusion in Async Generators in Javascript Engine (CVE-2024-7652) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 firefox-x11-128.2.0-1.el9_4.alma.1.aarch64.rpm 688f6b39664e007a04bc1781bac6464ea67bc141eea5ade5cf463380b5af1d30
aarch64 firefox-128.2.0-1.el9_4.alma.1.aarch64.rpm ab99110b515e7b15441a12464c4d2567df8d34b3273d45ea9ef2d6d5d21af5b7
ppc64le firefox-x11-128.2.0-1.el9_4.alma.1.ppc64le.rpm 37a80c0c2054499abe62c7aee1a70353ac5217fc2c61345cb2320561dbb0b5bb
ppc64le firefox-128.2.0-1.el9_4.alma.1.ppc64le.rpm 3d1553b34f40f0f4d5a05ac6180edcaafd444368e11c4b75d2dd6d49263bce40
s390x firefox-x11-128.2.0-1.el9_4.alma.1.s390x.rpm 9ef450f7fbcb93f2a8dc347d8365244f19dce30a76d63167b1fc5d48b213102d
s390x firefox-128.2.0-1.el9_4.alma.1.s390x.rpm f63537e35fbba933eeb2d506abc0d1119d121bb087be2f29b951dcb82953f616
x86_64 firefox-128.2.0-1.el9_4.alma.1.x86_64.rpm 2735cdf08b13d2b28823ebe2e185186129d180d04c3f0ab9ff0dfb6256472773
x86_64 firefox-x11-128.2.0-1.el9_4.alma.1.x86_64.rpm 76b22aa89c570af205b1693cd73b4fedf510c7e3d1d72672d76af1a4f7e4b3aa
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.