{"affected":[],"aliases":[],"details":"This update for MozillaFirefox to version 60.5.0esr fixes the following issues:\n\nSecurity issues fixed:\n\n- CVE-2018-18500: Fixed a use-after-free parsing HTML5 stream (boo#1122983).\n- CVE-2018-18505: Fixed a privilege escalation through IPC channel messages (boo#1122983).\n- CVE-2018-18501: Fixed multiple memory safety bugs (boo#1122983).\n","id":"openSUSE-SU-2019:0132-1","modified":"2019-03-23T10:54:56Z","published":"2019-03-23T10:54:56Z","references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/OWRMCVMFUQAET2SE7IUYHIVUEQKIBNAH/#OWRMCVMFUQAET2SE7IUYHIVUEQKIBNAH"},{"type":"REPORT","url":"https://bugzilla.suse.com/1122983"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-18500"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-18501"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-18505"}],"related":["CVE-2018-18500","CVE-2018-18501","CVE-2018-18505"],"summary":"Security update for MozillaFirefox","upstream":["CVE-2018-18500","CVE-2018-18501","CVE-2018-18505"]}