USN-6010-2

See a problem?
Source
https://ubuntu.com/security/notices/USN-6010-2
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/USN-6010-2.json
JSON Data
https://api.osv.dev/v1/vulns/USN-6010-2
Published
2023-04-18T04:16:43.982986Z
Modified
2023-04-18T04:16:43.982986Z
Summary
firefox regressions
Details

USN-6010-1 fixed vulnerabilities in Firefox. The update introduced several minor regressions. This update fixes the problem.

We apologize for the inconvenience.

Original advisory details:

Multiple security issues were discovered in Firefox. If a user were tricked into opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, obtain sensitive information across domains, or execute arbitrary code. (CVE-2023-29537, CVE-2023-29540, CVE-2023-29543, CVE-2023-29544, CVE-2023-29547, CVE-2023-29548, CVE-2023-29549, CVE-2023-29550, CVE-2023-29551)

Irvan Kurniawan discovered that Firefox did not properly manage fullscreen notifications using a combination of window.open, fullscreen requests, window.name assignments, and setInterval calls. An attacker could potentially exploit this issue to perform spoofing attacks. (CVE-2023-29533)

Lukas Bernhard discovered that Firefox did not properly manage memory when doing Garbage Collector compaction. An attacker could potentially exploits this issue to cause a denial of service. (CVE-2023-29535)

Zx from qriousec discovered that Firefox did not properly validate the address to free a pointer provided to the memory manager. An attacker could potentially exploits this issue to cause a denial of service. (CVE-2023-29536)

Alexis aka zoracon discovered that Firefox did not properly validate the URI received by the WebExtension during a load request. An attacker could potentially exploits this to obtain sensitive information. (CVE-2023-29538)

Trung Pham discovered that Firefox did not properly validate the filename directive in the Content-Disposition header. An attacker could possibly exploit this to perform reflected file download attacks potentially tricking users to install malware. (CVE-2023-29539)

Ameen Basha M K discovered that Firefox did not properly validate downloads of files ending in .desktop. An attacker could potentially exploits this issue to execute arbitrary code. (CVE-2023-29541)

References

Affected packages

Ubuntu:18.04:LTS / firefox

Package

Name
firefox

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
112.0.1+build1-0ubuntu0.18.04.1

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "firefox-locale-sl": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-nl": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-kn": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-gl": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-fy": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-kk": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-km": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-or": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-az": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-lt": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-hy": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-eo": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-sv": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-uk": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-sr": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-is": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ca": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ne": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ga": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ja": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-it": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-lg": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ms": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-zh-hans": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ia": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ko": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-hr": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-mai": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-nb": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-mozsymbols": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-vi": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-dev": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-he": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-sw": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-el": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-oc": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-xh": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-nn": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-geckodriver": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ar": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-cs": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-gn": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-hsb": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-zu": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-my": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ro": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-csb": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-nso": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-af": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-sk": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-szl": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-si": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-cy": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-fa": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-cak": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-sq": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-en": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-tr": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-br": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-et": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ast": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-th": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-da": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-fi": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ku": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-mn": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ru": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-mk": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-bg": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-hu": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-gu": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-bn": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-kab": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ml": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-an": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-be": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-eu": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-fr": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-pa": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-as": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-id": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-pl": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-gd": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-te": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-lv": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ka": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ta": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-bs": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-uz": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-hi": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-zh-hant": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-es": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-ur": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-mr": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-pt": "112.0.1+build1-0ubuntu0.18.04.1",
            "firefox-locale-de": "112.0.1+build1-0ubuntu0.18.04.1"
        }
    ]
}

Ubuntu:20.04:LTS / firefox

Package

Name
firefox

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
112.0.1+build1-0ubuntu0.20.04.1

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "firefox-locale-sl": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-nl": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-kn": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-gl": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-fy": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-kk": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-km": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-or": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-az": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-lt": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-hy": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-eo": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sv": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-uk": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sr": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-is": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ca": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ne": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ga": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ja": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-it": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-lg": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ms": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-zh-hans": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ia": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ko": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-hr": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-mai": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-nb": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-mozsymbols": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-vi": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-dev": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-he": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sw": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-el": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-oc": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-xh": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-nn": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-geckodriver": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ar": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-cs": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-gn": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-hsb": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-zu": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-my": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ro": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-csb": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-nso": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-af": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sk": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-szl": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-si": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-cy": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-fa": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-cak": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-sq": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-en": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-tr": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-br": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-et": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ast": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-th": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-da": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-fi": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ku": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-mn": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ru": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-mk": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-bg": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-hu": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-gu": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-bn": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-kab": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ml": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-an": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-be": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-eu": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-fr": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-pa": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-as": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-id": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-pl": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-gd": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-te": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-lv": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ka": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ta": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-bs": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-uz": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-hi": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-zh-hant": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-es": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-ur": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-mr": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-pt": "112.0.1+build1-0ubuntu0.20.04.1",
            "firefox-locale-de": "112.0.1+build1-0ubuntu0.20.04.1"
        }
    ]
}