Mozilla Releases security updates

Number: AV16-127
Date: Aug 4, 2016

Purpose

The purpose of this advisory is to raise awareness of multiple vulnerabilities in Mozilla Firefox and Firefox ESR for which updates are now available.

Assessment

Mozilla released security updates to address 24 vulnerabilities (3 Critical, 8 High, 11 Moderate and 2 Low) in Firefox and Firefox ESR. The severity of these issues ranges from low to critical.

Version affected:
Firefox versions prior to 48.0
ESR versions prior to 45.3

CVE References: CVE-2016-0718, CVE-2016-2830, CVE-2016-2835, CVE-2016-2836, CVE-2016-2837, CVE-2016-2838, CVE-2016-2839, CVE-2016-5250, CVE-2016-5251, CVE-2016-5252, CVE-2016-5253, CVE-2016-5254, CVE-2016-5255, CVE-2016-5258, CVE-2016-5259, CVE-2016-5260, CVE-2016-5261, CVE-2016-5262, CVE-2016-5263, CVE-2016-5264, CVE-2016-5265, CVE-2016-5266, CVE-2016-5267, CVE-2016-5268

Suggested action

CCIRC recommends that system administrators test and deploy the vendor-released updates to affected applications accordingly.

References

https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox/
https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-esr/

Date modified: