• Firefox regressions

    From bugz_ubuntu@21:4/110 to Ubuntu Users on Thursday, January 30, 2020 12:10:04
    firefox regressions

    A security issue affects these releases of Ubuntu and its
    derivatives:

    * Ubuntu 19.10
    * Ubuntu 18.04 LTS
    * Ubuntu 16.04 LTS

    Summary

    USN-4234-1 caused some minor regressions in Firefox.

    Software Description

    * firefox - Mozilla Open Source web browser

    Details

    USN-4234-1 fixed vulnerabilities in Firefox. The update introduced
    various minor regressions. This update fixes the problems.

    We apologize for the inconvenience.

    Original advisory details:

    Multiple security issues were discovered in Firefox. If a user
    were tricked in to opening a specially crafted website, an
    attacker could potentially exploit these to cause a denial of
    service, obtain sensitive information, bypass Content Security
    Policy (CSP) restrictions, conduct cross-site scripting (XSS)
    attacks, or execute arbitrary code.

    Update instructions

    The problem can be corrected by updating your system to the
    following package versions:

    Ubuntu 19.10
    firefox - 72.0.2+build1-0ubuntu0.19.10.1

    Ubuntu 18.04 LTS
    firefox - 72.0.2+build1-0ubuntu0.18.04.1

    Ubuntu 16.04 LTS
    firefox - 72.0.2+build1-0ubuntu0.16.04.1

    To update your system, please follow these instructions:
    https://wiki.ubuntu.com/Security/Upgrades.

    After a standard system update you need to restart Firefox to make
    all the necessary changes.

    References

    * USN-4234-1
    * LP: 1856707

    --- Mystic BBS v1.12 A43 (Linux/64)
    * Origin: BZ&BZ BBS (21:4/110)
  • From bugz_ubuntu@21:4/110 to Ubuntu Users on Wednesday, February 26, 2020 12:10:03
    firefox regressions

    A security issue affects these releases of Ubuntu and its
    derivatives:

    * Ubuntu 19.10
    * Ubuntu 18.04 LTS

    Summary

    USN-4278-1 caused some minor regressions in Firefox.

    Software Description

    * firefox - Mozilla Open Source web browser

    Details

    USN-4278-1 fixed vulnerabilities in Firefox. The update introduced
    various minor regressions. This update fixes the problem.

    We apologize for the inconvenience.

    Original advisory details:

    Multiple security issues were discovered in Firefox. If a user
    were tricked in to opening a specially crafted website, an
    attacker could potentially exploit these to cause a denial of
    service, conduct cross-site scripting (XSS) attacks, or execute
    arbitrary code.

    Update instructions

    The problem can be corrected by updating your system to the
    following package versions:

    Ubuntu 19.10
    firefox - 73.0.1+build1-0ubuntu0.19.10.1

    Ubuntu 18.04 LTS
    firefox - 73.0.1+build1-0ubuntu0.18.04.1

    To update your system, please follow these instructions:
    https://wiki.ubuntu.com/Security/Upgrades.

    After a standard system update you need to restart Firefox to make
    all the necessary changes.

    References

    * USN-4278-1
    * LP: 1864852

    --- Mystic BBS v1.12 A45 (Linux/64)
    * Origin: BZ&BZ BBS (21:4/110)
  • From bugz_ubuntu@21:4/110 to Ubuntu Users on Thursday, September 03, 2020 20:10:02
    firefox regressions

    A security issue affects these releases of Ubuntu and its
    derivatives:

    * Ubuntu 20.04 LTS
    * Ubuntu 18.04 LTS
    * Ubuntu 16.04 LTS

    Summary

    USN-4474-1 caused some minor regressions in Firefox.

    Software Description

    * firefox - Mozilla Open Source web browser

    Details

    USN-4474-1 fixed vulnerabilities in Firefox. The update introduced
    various minor regressions. This update fixes the problem.

    We apologize for the inconvenience.

    Original advisory details:

    Multiple security issues were discovered in Firefox. If a user
    were tricked in to opening a specially crafted website, an
    attacker could potentially exploit these to cause a denial of
    service, trick the user in to installing a malicious extension,
    spoof the URL bar, leak sensitive information between origins, or
    execute arbitrary code. (CVE-2020-15664, CVE-2020-15665,
    CVE-2020-15666, CVE-2020-15670)

    It was discovered that NSS incorrectly handled certain signatures.
    An attacker could possibly use this issue to expose sensitive
    information. (CVE-2020-12400, CVE-2020-12401, CVE-2020-6829)

    A data race was discovered when importing certificate information
    in to the trust store. An attacker could potentially exploit this
    to cause an unspecified impact. (CVE-2020-15668)

    Update instructions

    The problem can be corrected by updating your system to the
    following package versions:

    Ubuntu 20.04 LTS
    firefox - 80.0.1+build1-0ubuntu0.20.04.1

    Ubuntu 18.04 LTS
    firefox - 80.0.1+build1-0ubuntu0.18.04.1

    Ubuntu 16.04 LTS
    firefox - 80.0.1+build1-0ubuntu0.16.04.1

    To update your system, please follow these instructions:
    https://wiki.ubuntu.com/Security/Upgrades.

    After a standard system update you need to restart Firefox to make
    all the necessary changes.

    References

    * USN-4474-1
    * LP: 1893021

    --- Mystic BBS v1.12 A46 (Linux/64)
    * Origin: BZ&BZ BBS (21:4/110)
  • From boo_ubuntu@21:4/110 to Ubuntu Users on Friday, October 16, 2020 08:10:04
    firefox regressions

    A security issue affects these releases of Ubuntu and its
    derivatives:

    * Ubuntu 20.04 LTS
    * Ubuntu 18.04 LTS
    * Ubuntu 16.04 LTS

    Summary

    USN-4546-1 caused some minor regressions in Firefox.

    Software Description

    * firefox - Mozilla Open Source web browser

    Details

    USN-4546-1 fixed vulnerabilities in Firefox. The update introduced
    various minor regressions. This update fixes the problem.

    We apologize for the inconvenience.

    Original advisory details:

    Multiple security issues were discovered in Firefox. If a user
    were tricked in to opening a specially crafted website, an
    attacker could potentially exploit these to cause a denial of
    service, conduct cross-site scripting (XSS) attacks, spoof the
    site displayed in the download dialog, or execute arbitrary code.

    Update instructions

    The problem can be corrected by updating your system to the
    following package versions:

    Ubuntu 20.04 LTS
    firefox - 81.0.2+build1-0ubuntu0.20.04.1

    Ubuntu 18.04 LTS
    firefox - 81.0.2+build1-0ubuntu0.18.04.1

    Ubuntu 16.04 LTS
    firefox - 81.0.2+build1-0ubuntu0.16.04.1

    To update your system, please follow these instructions:
    https://wiki.ubuntu.com/Security/Upgrades.

    After a standard system update you need to restart Firefox to make
    all the necessary changes.

    References

    * USN-4546-1
    * LP: 1900032

    --- Mystic BBS v1.12 A46 (Linux/64)
    * Origin: BZ&BZ BBS (21:4/110)