{"id":"MGASA-2021-0065","summary":"Updated firefox packages fix security vulnerabilities","details":"When a HTTPS page was embedded in a HTTP page, and there was a service worker\nregistered for the former, the service worker could have intercepted the\nrequest for the secure page despite the iframe not being a secure context due\nto the (insecure) framing (CVE-2020-26976).\n\nIf a user clicked into a specifically crafted PDF, the PDF reader could be\nconfused into leaking cross-origin information, when said information is\nserved as chunked data (CVE-2021-23953).\n\nUsing the new logical assignment operators in a JavaScript switch statement\ncould have caused a type confusion, leading to a memory corruption and a\npotentially exploitable crash (CVE-2021-23954).\n\nPerforming garbage collection on re-declared JavaScript variables resulted in\na user-after-poison, and a potentially exploitable crash (CVE-2021-23960).\n\nMozilla developers Alexis Beingessner, Christian Holler, Andrew McCreight,\nTyson Smith, Jon Coppeard, André Bargull, Jason Kratzer, Jesse\nSchwartzentruber, Steve Fink, Byron Campen reported memory safety bugs present\nin Firefox ESR 78.6. Some of these bugs showed evidence of memory corruption\nand we presume that with enough effort some of these could have been exploited\nto run arbitrary code (CVE-2021-23964).\n","modified":"2026-04-16T04:42:46.943798815Z","published":"2021-02-04T13:40:24Z","upstream":["CVE-2020-26976","CVE-2021-23953","CVE-2021-23954","CVE-2021-23960","CVE-2021-23964"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2021-0065.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=28218"},{"type":"WEB","url":"https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.61_release_notes"},{"type":"ADVISORY","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2021-04/"}],"affected":[{"package":{"name":"crypto-policies","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/crypto-policies?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20210118-1.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2021-0065.json"}},{"package":{"name":"nss","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/nss?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.61.0-1.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2021-0065.json"}},{"package":{"name":"firefox","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/firefox?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"78.7.0-1.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2021-0065.json"}},{"package":{"name":"firefox-l10n","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/firefox-l10n?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"78.7.0-1.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2021-0065.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}