[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 1118-1] firefox-esr security update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Package        : firefox-esr
Version        : 52.4.0esr-2~deb7u1
CVE ID         : CVE-2017-7793 CVE-2017-7805 CVE-2017-7810 CVE-2017-7814
                 CVE-2017-7818 CVE-2017-7819 CVE-2017-7823 CVE-2017-7824

Several security issues have been found in the Mozilla Firefox web
browser: Multiple memory safety errors, use-after-frees, buffer
overflows and other implementation errors may lead to the execution of
arbitrary code, denial of service, cross-site scripting or bypass of
the phishing and malware protection feature.

For Debian 7 "Wheezy", these problems have been fixed in version
52.4.0esr-2~deb7u1.

We recommend that you upgrade your firefox-esr packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
-----BEGIN PGP SIGNATURE-----
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=Q9Hm
-----END PGP SIGNATURE-----


Reply to: