File _patchinfo of Package patchinfo.9556
<patchinfo incident="9556"> <issue tracker="bnc" id="1121255">Firefox 60.x ESR does not build for armv7 leap</issue> <issue tracker="bnc" id="1122983">VUL-0: MozillaFirefox: 65, 60.5, Thunderbird 60.5</issue> <issue tracker="cve" id="2018-18505"/> <issue tracker="cve" id="2018-18500"/> <issue tracker="cve" id="2018-18501"/> <category>security</category> <rating>important</rating> <packager>wrosenauer</packager> <description>This update for MozillaFirefox, mozilla-nss fixes the following issues: Security issues fixed: - CVE-2018-18500: Fixed a use-after-free parsing HTML5 stream (boo#1122983). - CVE-2018-18505: Fixed a privilege escalation through IPC channel messages (boo#1122983). - CVE-2018-18501: Fixed multiple memory safety bugs (boo#1122983). Non-security issue fixed: - Update mozilla-nss to version 3.36.7 as build dependency. </description> <summary>Security update for MozillaFirefox</summary> </patchinfo>