2018-06-15
ALT-BU-2018-3308-1
Branch sisyphus update bulletin.
Package firefox-esr updated to version 60.0.2-alt1 for branch sisyphus in task 207944.
Closed vulnerabilities
Published: 2018-05-29
BDU:2019-04395
Уязвимость библиотеки Skia браузеров Firefox ESR, Firefox, Google Chrome, позволяющая нарушителю записать произвольные файлы в файловую систему устройства
Severity: HIGH (8.8)
Vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
References:
Published: 2019-01-09
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2018-6126
A precision error in Skia in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.
Severity: HIGH (8.8)
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
References:
- 104309
- 104309
- 104411
- 104411
- 1041014
- 1041014
- 1041046
- 1041046
- RHSA-2018:1815
- RHSA-2018:1815
- RHSA-2018:2112
- RHSA-2018:2112
- RHSA-2018:2113
- RHSA-2018:2113
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/844457
- https://crbug.com/844457
- GLSA-201810-01
- GLSA-201810-01
- DSA-4220
- DSA-4220
- DSA-4237
- DSA-4237
- 45098
- 45098
Package xorg-server updated to version 1.20.0-alt2 for branch sisyphus in task 208369.
Closed bugs
X server crash on xfce startup
Closed bugs
lua-lpeg: new version