Mozilla Products Multiple Vulnerabilities
Last Update Date:
1 Apr 2015 17:47
Release Date:
1 Apr 2015
3840
Views
RISK: High Risk
TYPE: Clients - Browsers
Multiple vulnerabilities have been identified in Mozilla Firefox, Firefox ESR and Thunderbird, which can be exploited by malicious people to disclose potentially sensitive information, conduct clickjacking and cross-site request forgery attacks, bypass certain security restrictions, and compromise a user's system.
Impact
- Cross-Site Scripting
- Security Restriction Bypass
- Information Disclosure
System / Technologies affected
- Mozilla Firefox versions prior to 37
- Mozilla Firefox ESR versions prior to 31.6
- Thunderbird versions prior to 31.6
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Upgrade to Firefox 37, Firefox ESR 31.6 and Thunderbird 31.6
Vulnerability Identifier
- CVE-2015-0801
- CVE-2015-0802
- CVE-2015-0803
- CVE-2015-0804
- CVE-2015-0805
- CVE-2015-0806
- CVE-2015-0807
- CVE-2015-0810
- CVE-2015-0811
- CVE-2015-0812
- CVE-2015-0813
- CVE-2015-0814
- CVE-2015-0815
- CVE-2015-0816
Source
Related Link
- http://securitytracker.com/id/1031996
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-30/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-31/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-32/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-33/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-34/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-35/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-37/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-38/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-40/
- https://www.mozilla.org/en-US/security/advisories/mfsa2015-42/
Share with