Commit 6bde107f authored by Lev Lamberov's avatar Lev Lamberov

[SECURITY] [DSA 4479-1] firefox-esr security update

parent e878c411
<define-tag pagetitle>DSA-4479-1 firefox-esr</define-tag>
<define-tag report_date>2019-7-11</define-tag>
<define-tag secrefs>CVE-2019-9811 CVE-2019-11709 CVE-2019-11711 CVE-2019-11712 CVE-2019-11713 CVE-2019-11715 CVE-2019-11717 CVE-2019-11730 CVE-2019-11719 CVE-2019-11729</define-tag>
<define-tag packages>firefox-esr</define-tag>
<define-tag isvulnerable>yes</define-tag>
<define-tag fixed>yes</define-tag>
<define-tag fixed-section>no</define-tag>
#use wml::debian::security
<define-tag description>security update</define-tag>
<define-tag moreinfo>
<p>Multiple security issues have been found in the Mozilla Firefox web
browser, which could potentially result in the execution of arbitrary
code, cross-site scripting, spoofing, information disclosure, denial of
service or cross-site request forgery.</p>
<p>For the oldstable distribution (stretch), these problems have been fixed
in version 60.8.0esr-1~deb9u1.</p>
<p>For the stable distribution (buster), these problems have been fixed in
version 60.8.0esr-1~deb10u1.</p>
<p><a href="">\
CVE-2019-11719</a> and
<a href="">\
CVE-2019-11729</a> are only addressed for stretch, in buster Firefox uses
the system-wide copy of NSS which will be updated separately.</p>
<p>We recommend that you upgrade your firefox-esr packages.</p>
<p>For the detailed security status of firefox-esr please refer to
its security tracker page at:
<a href="">\</a></p>
# do not modify the following line
#include "$(ENGLISHDIR)/security/2019/"
# $Id: $
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment