USN-6966-1

See a problem?
Source
https://ubuntu.com/security/notices/USN-6966-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-6966-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-6966-1
Related
  • CVE-2024-7518
  • CVE-2024-7519
  • CVE-2024-7520
  • CVE-2024-7521
  • CVE-2024-7522
  • CVE-2024-7524
  • CVE-2024-7525
  • CVE-2024-7526
  • CVE-2024-7527
  • CVE-2024-7528
  • CVE-2024-7529
  • CVE-2024-7530
  • CVE-2024-7531
Published
2024-08-19T03:36:06.081215Z
Modified
2024-08-19T03:36:06.081215Z
Summary
firefox vulnerabilities
Details

Multiple security issues were discovered in Firefox. If a user were tricked into opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, obtain sensitive information across domains, or execute arbitrary code. (CVE-2024-7518, CVE-2024-7521, CVE-2024-7524, CVE-2024-7526, CVE-2024-7527, CVE-2024-7528, CVE-2024-7529, CVE-2024-7530, CVE-2024-7531)

It was discovered that Firefox did not properly manage certain memory operations when processing graphics shared memory. An attacker could potentially exploit this issue to escape the sandbox. (CVE-2024-7519)

Nan Wang discovered that Firefox did not properly handle type check in WebAssembly. An attacker could potentially exploit this issue to execute arbitrary code. (CVE-2024-7520)

Irvan Kurniawan discovered that Firefox did not properly check an attribute value in the editor component, leading to an out-of-bounds read vulnerability. An attacker could possibly use this issue to cause a denial of service or expose sensitive information. (CVE-2024-7522)

Rob Wu discovered that Firefox did not properly check permissions when creating a StreamFilter. An attacker could possibly use this issue to modify response body of requests on any site using a web extension. (CVE-2024-7525)

References

Affected packages

Ubuntu:20.04:LTS / firefox

Package

Name
firefox
Purl
pkg:deb/ubuntu/firefox@129.0.1+build1-0ubuntu0.20.04.1?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
129.0.1+build1-0ubuntu0.20.04.1

Affected versions

69.*

69.0.3+build1-0ubuntu1

70.*

70.0+build2-0ubuntu1
70.0+build2-0ubuntu2
70.0.1+build1-0ubuntu2

71.*

71.0+build2-0ubuntu2
71.0+build5-0ubuntu1

72.*

72.0.1+build1-0ubuntu1
72.0.2+build1-0ubuntu1

73.*

73.0+build1-0ubuntu1
73.0+build2-0ubuntu1
73.0+build3-0ubuntu1
73.0.1+build1-0ubuntu1

74.*

74.0+build1-0ubuntu1
74.0+build2-0ubuntu1
74.0+build2-0ubuntu2
74.0+build3-0ubuntu1

75.*

75.0+build3-0ubuntu1

76.*

76.0+build2-0ubuntu0.20.04.1
76.0.1+build1-0ubuntu0.20.04.1

77.*

77.0.1+build1-0ubuntu0.20.04.1

78.*

78.0.1+build1-0ubuntu0.20.04.1
78.0.2+build2-0ubuntu0.20.04.1

79.*

79.0+build1-0ubuntu0.20.04.1

80.*

80.0+build2-0ubuntu0.20.04.1
80.0.1+build1-0ubuntu0.20.04.1

81.*

81.0+build2-0ubuntu0.20.04.1
81.0.2+build1-0ubuntu0.20.04.1

82.*

82.0+build2-0ubuntu0.20.04.1
82.0.2+build1-0ubuntu0.20.04.1
82.0.3+build1-0ubuntu0.20.04.1

83.*

83.0+build2-0ubuntu0.20.04.1

84.*

84.0+build3-0ubuntu0.20.04.1
84.0.1+build1-0ubuntu0.20.04.1
84.0.2+build1-0ubuntu0.20.04.1

85.*

85.0+build1-0ubuntu0.20.04.1
85.0.1+build1-0ubuntu0.20.04.1

86.*

86.0+build3-0ubuntu0.20.04.1
86.0.1+build1-0ubuntu0.20.04.1

87.*

87.0+build3-0ubuntu0.20.04.2

88.*

88.0+build2-0ubuntu0.20.04.1
88.0.1+build1-0ubuntu0.20.04.2

89.*

89.0+build2-0ubuntu0.20.04.2
89.0.1+build1-0ubuntu0.20.04.1
89.0.2+build1-0ubuntu0.20.04.1

90.*

90.0+build1-0ubuntu0.20.04.1
90.0.2+build1-0ubuntu0.20.04.1

91.*

91.0+build2-0ubuntu0.20.04.1
91.0.1+build1-0ubuntu0.20.04.1
91.0.2+build1-0ubuntu0.20.04.1

92.*

92.0+build3-0ubuntu0.20.04.1

93.*

93.0+build1-0ubuntu0.20.04.1

94.*

94.0+build3-0ubuntu0.20.04.1

95.*

95.0+build1-0ubuntu0.20.04.1
95.0.1+build2-0ubuntu0.20.04.1

96.*

96.0+build2-0ubuntu0.20.04.1

97.*

97.0+build2-0ubuntu0.20.04.1
97.0.2+build1-0ubuntu0.20.04.1

98.*

98.0+build3-0ubuntu0.20.04.2
98.0.1+build2-0ubuntu0.20.04.1
98.0.2+build1-0ubuntu0.20.04.1

99.*

99.0+build2-0ubuntu0.20.04.2

100.*

100.0+build2-0ubuntu0.20.04.1
100.0.2+build1-0ubuntu0.20.04.1

101.*

101.0.1+build1-0ubuntu0.20.04.1

102.*

102.0+build2-0ubuntu0.20.04.1

103.*

103.0+build1-0ubuntu0.20.04.1

104.*

104.0+build3-0ubuntu0.20.04.1

105.*

105.0+build2-0ubuntu0.20.04.1

106.*

106.0.2+build1-0ubuntu0.20.04.1
106.0.5+build1-0ubuntu0.20.04.1

107.*

107.0+build2-0ubuntu0.20.04.1

108.*

108.0+build2-0ubuntu0.20.04.1
108.0.1+build1-0ubuntu0.20.04.1
108.0.2+build1-0ubuntu0.20.04.1

109.*

109.0+build2-0ubuntu0.20.04.1
109.0.1+build1-0ubuntu0.20.04.2

110.*

110.0+build3-0ubuntu0.20.04.1
110.0.1+build2-0ubuntu0.20.04.1

111.*

111.0+build2-0ubuntu0.20.04.1
111.0.1+build2-0ubuntu0.20.04.1

112.*

112.0+build2-0ubuntu0.20.04.1
112.0.1+build1-0ubuntu0.20.04.1
112.0.2+build1-0ubuntu0.20.04.1

113.*

113.0+build2-0ubuntu0.20.04.1
113.0.1+build1-0ubuntu0.20.04.1
113.0.2+build1-0ubuntu0.20.04.1

114.*

114.0+build3-0ubuntu0.20.04.1
114.0.1+build1-0ubuntu0.20.04.1
114.0.2+build1-0ubuntu0.20.04.1

115.*

115.0+build2-0ubuntu0.20.04.3
115.0.2+build1-0ubuntu0.20.04.1

116.*

116.0+build2-0ubuntu0.20.04.2
116.0.2+build1-0ubuntu0.20.04.1
116.0.3+build2-0ubuntu0.20.04.1

117.*

117.0+build2-0ubuntu0.20.04.1
117.0.1+build2-0ubuntu0.20.04.1

118.*

118.0.1+build1-0ubuntu0.20.04.1
118.0.2+build2-0ubuntu0.20.04.1

119.*

119.0+build2-0ubuntu0.20.04.1
119.0.1+build1-0ubuntu0.20.04.1

120.*

120.0+build2-0ubuntu0.20.04.1
120.0.1+build1-0ubuntu0.20.04.1

121.*

121.0+build1-0ubuntu0.20.04.1
121.0.1+build1-0ubuntu0.20.04.1

122.*

122.0+build2-0ubuntu0.20.04.1
122.0.1+build1-0ubuntu0.20.04.1

123.*

123.0+build3-0ubuntu0.20.04.1
123.0.1+build1-0ubuntu0.20.04.1

124.*

124.0+build1-0ubuntu0.20.04.1
124.0.1+build1-0ubuntu0.20.04.1
124.0.2+build1-0ubuntu0.20.04.1

125.*

125.0.2+build1-0ubuntu0.20.04.2
125.0.3+build1-0ubuntu0.20.04.1

126.*

126.0+build2-0ubuntu0.20.04.1
126.0.1+build1-0ubuntu0.20.04.1

127.*

127.0.2+build1-0ubuntu0.20.04.1

128.*

128.0+build2-0ubuntu0.20.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "firefox-locale-de": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-nl": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-kn": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-gl": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-fy": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-eo": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-km": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-or": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-az": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-lt": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-hy": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-kk": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sv": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-uk": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sr": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ca": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-is": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-dbg": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ne": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ga": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-it": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ja": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-lg": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ms": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-dev": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ia": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ko": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-hr": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-mai": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-nb": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-mozsymbols": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-vi": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-zh-hans": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-he": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sw": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-el": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-oc": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-xh": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-tg": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-nn": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-csb": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-geckodriver": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-cs": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-gn": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-hsb": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-zu": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-my": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ro": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ar": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-szl": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-af": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sk": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-nso": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-si": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-cy": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-fa": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-cak": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sq": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-en": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-tr": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-br": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-et": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ast": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-th": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-da": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-fi": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ku": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-mn": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ru": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-mk": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-bg": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-hu": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-gu": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-bn": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-kab": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ml": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-an": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-be": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-eu": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-fr": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-pa": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-as": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-id": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-mr": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-bs": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-te": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-lv": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ka": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ta": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-gd": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-zh-hant": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-uz": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-hi": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-es": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ur": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-pl": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-pt": "129.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sl": "129.0.1+build1-0ubuntu0.20.04.1"
        }
    ]
}