MGASA-2018-0338

Source
https://advisories.mageia.org/MGASA-2018-0338.html
Import Source
https://advisories.mageia.org/MGASA-2018-0338.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2018-0338
Related
Published
2018-08-15T15:45:26Z
Modified
2018-08-15T15:20:37Z
Summary
Updated iceaepe packages fix security vulnerability
Details

Updated iceape packages include security fixes from upstream Seamonkey and Firefox:

Multiple flaws were found in the way Iceape 2.49.1 processes various types of web content, where loading a web page containing malicious content could cause Iceape to crash, execute arbitrary code, or disclose sensitive information (CVE-2018-5089, CVE-2018-5091, CVE-2018-5095, CVE-2018-5096, CVE-2018-5097, CVE-2018-5098, CVE-2018-5099, CVE-2018-5102, CVE-2018-5103, CVE-2018-5104, CVE-2018-5117, CVE-2018-5125, CVE-2018-5127, CVE-2018-5129, CVE-2018-5130, CVE-2018-5131, CVE-2018-5144, CVE-2018-5145, CVE-2018-5148, CVE-2018-5150, CVE-2018-5154, CVE-2018-5155, CVE-2018-5157, CVE-2018-5158, CVE-2018-5159, CVE-2018-5168, CVE-2018-5178, CVE-2018-5183, CVE-2018-6126)

References
Credits

Affected packages

Mageia:6 / iceape

Package

Name
iceape
Purl
pkg:rpm/mageia/iceape?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.49.3-1.mga6

Ecosystem specific

{
    "section": "core"
}