Headline
RHSA-2021:0656: Red Hat Security Advisory: firefox security update
An update for firefox is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 78.8.0 ESR. Security Fix(es):
- Mozilla: Content Security Policy violation report could have contained the destination of a redirect (CVE-2021-23968)
- Mozilla: Content Security Policy violation report could have contained the destination of a redirect (CVE-2021-23969)
- Mozilla: Memory safety bugs fixed in Firefox 86 and Firefox ESR 78.8 (CVE-2021-23978)
- Mozilla: MediaError message property could have leaked information about cross-origin resources (CVE-2021-23973) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Related CVEs:
- CVE-2021-23968: Mozilla: Content Security Policy violation report could have contained the destination of a redirect
- CVE-2021-23969: Mozilla: Content Security Policy violation report could have contained the destination of a redirect
- CVE-2021-23973: Mozilla: MediaError message property could have leaked information about cross-origin resources
- CVE-2021-23978: Mozilla: Memory safety bugs fixed in Firefox 86 and Firefox ESR 78.8