RHSA-2016:0197Critical
Red Hat Security Advisory: firefox security update
🔗 CVE IDs covered (4)
📋 Description
CVE-2016-1521 — graphite2: Out-of-bound read vulnerability triggered by crafted fonts CVE-2016-1522 — graphite2: Null pointer dereference and out-of-bounds access vulnerabilities CVE-2016-1523 — graphite2: Heap-based buffer overflow in context item handling functionality CVE-2016-1969 — mozilla: out-of-bounds write with malicious font in graphite2 (MFSA 2016-38)
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2016:0197
- externalhttps://access.redhat.com/security/updates/classification/#critical
- externalhttps://www.mozilla.org/security/announce/2016/mfsa2016-14.html
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1305805
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1305810
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1305813
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1306496
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2016/rhsa-2016_0197.json