Security update for MozillaFirefox
This update for MozillaFirefox, mozilla-nss fixes the following issues:
Security issues fixed:
- CVE-2018-18500: Fixed a use-after-free parsing HTML5 stream (boo#1122983).
- CVE-2018-18505: Fixed a privilege escalation through IPC channel messages (boo#1122983).
- CVE-2018-18501: Fixed multiple memory safety bugs (boo#1122983).
Non-security issue fixed:
- Update mozilla-nss to version 3.36.7 as build dependency.
-
Submitted by
Wolfgang Rosenauer (wrosenauer)
Fixed bugs
bnc#1121255
Firefox 60.x ESR does not build for armv7 leap
bnc#1122983
VUL-0: MozillaFirefox: 65, 60.5, Thunderbird 60.5