漏洞信息详情
多款Mozilla产品缓冲区错误漏洞
漏洞简介
Mozilla Firefox等都是美国Mozilla基金会的产品。Mozilla Firefox是一款开源Web浏览器。Mozilla Firefox ESR是Firefox(Web浏览器)的一个延长支持版本。Mozilla Thunderbird是一套从Mozilla Application Suite独立出来的电子邮件客户端软件。
Mozilla Firefox 73版本、Firefox ESR 68.5版本和Thunderbird 68.5版本中存在安全漏洞。攻击者可利用该漏洞造成内存损坏或可能执行任意代码。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://www.mozilla.org/en-US/security/advisories/mfsa2020-09/
https://www.mozilla.org/en-US/security/advisories/mfsa2020-08/
https://www.mozilla.org/en-US/security/advisories/mfsa2020-10/
参考网址
来源:MISC
链接:https://www.mozilla.org/security/advisories/mfsa2020-10/
来源:UBUNTU
链接:https://usn.ubuntu.com/4328-1/
来源:MISC
链接:https://bugzilla.mozilla.org/buglist.cgi?bug_id=1592078%2C1604847%2C1608256%2C1612636%2C1614339
来源:MISC
链接:https://www.mozilla.org/security/advisories/mfsa2020-09/
来源:MISC
链接:https://www.mozilla.org/security/advisories/mfsa2020-08/
来源:UBUNTU
链接:https://usn.ubuntu.com/4335-1/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/156765/Red-Hat-Security-Advisory-2020-0820-01.html
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/156819/Red-Hat-Security-Advisory-2020-0905-01.html
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/157345/Ubuntu-Security-Notice-USN-4335-1.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.0932/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.0878/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/156704/Gentoo-Linux-Security-Advisory-202003-02.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.0912/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.0996/
来源:access.redhat.com
链接:https://access.redhat.com/security/cve/cve-2020-6814
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/156721/Gentoo-Linux-Security-Advisory-202003-10.html
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-multiple-vulnerabilities-of-mozilla-firefox-less-than-firefox-68-6-0-esr-hava-affected-synthetic-playback-agent-8-1-4-0-8-1-4-if11-icam2019-3-0-2020-1-0/
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2020-6814
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.1294/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.1014/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.1025/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/156863/Red-Hat-Security-Advisory-2020-0914-01.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.1387/
受影响实体
暂无
补丁
- 多款Mozilla产品安全漏洞的修复措施<!--2020-3-10-->
还没有评论,来说两句吧...