Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Mozilla Firefox ESR Security Updates(mfsa_2019-33_2019-34)-MAC OS X

Information

Severity

Severity

Critical

Family

Family

General

CVSSv2 Base

CVSSv2 Base

9.3

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:M/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

4 years ago

Modified

Modified

4 years ago

Summary

This host is installed with Mozilla Firefox ESR and is prone to multiple vulnerabilities.

Insight

Insight

The multiple flaws exists due to, - A heap overflow issue in expat library in XML_GetCurrentLineNumber. - A use-after-free issue when creating index updates in IndexedDB. - A stack buffer overflow issue in HKDF output and WebRTC networking. - A unintended access issue to a privileged JSONView object. - A same-origin-property violation issue in document.domain-based origin isolation. - An incorrect HTML parsing issue. - Memory safety bugs.

Affected Software

Affected Software

Mozilla Firefox ESR version before 68.2 on MAC OS X.

Detection Method

Detection Method

Checks if a vulnerable version is present on the target host.

Solution

Solution

Upgrade to Mozilla Firefox ESR version 68.2 or later. Please see the references for more information.