CLD-489 Details
Other IDs this deficiency may be known by:
CVE ID |
None |
Other ID(s) |
fixed-in-27.9.4 |
Basic Information:
Affected Package(s) |
palemoon |
Deficiency Type |
SECURITY |
Date Created |
2018-07-21 11:46:09 |
Date Last Modified |
2018-07-21 11:53:21 |
Version Specific Information:
Cucumber 1.0 i686 | fixed in palemoon-27.9.4-i686-1 |
Cucumber 1.0 x86_64 | fixed in palemoon-27.9.4-x86_64-1 |
Cucumber 1.1 i686 |
fixed in palemoon-27.9.4-i686-1 |
Cucumber 1.1 x86_64 |
fixed in palemoon-27.9.4-x86_64-1 |
Details:
Fixes the following vulnerabilities:
Fixed a potential vulnerability with plugins being redirected to different
origins (CVE-2018-12364).
Fixed an issue with invalid qcms transforms (CVE-2018-12366).
Fixed a buffer overflow using the computed size of canvas elements
(CVE-2018-12359).
Fixed a use-after-free when using focus() (CVE-2018-12360).
For more information see http://www.palemoon.org/releasenotes.shtml