FreeBSD : firefox -- Arbitrary code execution through unsanitized browser UI (103bf96a-6211-45ab-b567-1555ebb3a86a)

high Nessus Plugin ID 106467

Language:

Synopsis

The remote FreeBSD host is missing one or more security-related updates.

Description

The Mozilla Foundation reports :

Mozilla developer Johann Hofmann reported that unsanitized output in the browser UI can lead to arbitrary code execution.

Solution

Update the affected packages.

See Also

https://bugzilla.mozilla.org/show_bug.cgi?id=1432966

http://www.nessus.org/u?20059a19

Plugin Details

Severity: High

ID: 106467

File Name: freebsd_pkg_103bf96a621145abb5671555ebb3a86a.nasl

Version: 1.3

Type: local

Published: 1/30/2018

Updated: 11/10/2018

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:firefox, p-cpe:/a:freebsd:freebsd:waterfox, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 1/29/2018

Vulnerability Publication Date: 1/29/2018