Univention Bugzilla – Full Text Bug Listing |
Summary: | Firefox: Security issues from 38.3 (4.0) | ||
---|---|---|---|
Product: | UCS | Reporter: | Arvid Requate <requate> |
Component: | Security updates | Assignee: | Janek Walkenhorst <walkenhorst> |
Status: | CLOSED FIXED | QA Contact: | Erik Damrose <damrose> |
Severity: | normal | ||
Priority: | P5 | CC: | gohmann, walkenhorst |
Version: | UCS 4.0 | Flags: | requate:
Patch_Available+
|
Target Milestone: | UCS 4.0-3-errata | ||
Hardware: | Other | ||
OS: | Linux | ||
URL: | https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-esr/ | ||
What kind of report is it?: | --- | What type of bug is this?: | --- |
Who will be affected by this bug?: | --- | How will those affected feel about the bug?: | --- |
User Pain: | Enterprise Customer affected?: | ||
School Customer affected?: | ISV affected?: | ||
Waiting Support: | Flags outvoted (downgraded) after PO Review: | ||
Ticket number: | Bug group (optional): | Security | |
Max CVSS v3 score: | |||
Bug Depends on: | 38523 | ||
Bug Blocks: |
Description
Arvid Requate
2015-09-22 19:07:31 CEST
MFSA-2015-105 is CVE-2015-4511, so: * Heap-buffer-overflow due to overflow in nestegg_track_codec_data (CVE-2015-4511) Advisories: firefox-de.yaml firefox-en.yaml OK - amd64/i386 OK - firefox-de firefox-en OK - YAML Advisories have the wrong "bug" field. (In reply to Janek Walkenhorst from comment #4) > Advisories have the wrong "bug" field. Fixed r64930 Verified (only rechecked bug number) |