Mozilla Updates
2711Warning Date
Severity Level
Warning Number
Target Sector
16 December, 2020
● Critical
2020-2216
All
Description:
Mozilla has released security updates to address several vulnerabilities in the following products:
- Thunderbird
- Firefox
- Firefox ESR
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Buffer overflow
- Unauthorized disclosure of information
- Execute arbitrary code
- Bypass of a protection mechanism
- Denial of service attack (DoS)
Best practice and Recommendations:
The CERT team encourages users to review Mozilla security advisory and apply the necessary updates:
- https://www.mozilla.org/en-US/security/advisories/mfsa2020-54/
- https://www.mozilla.org/en-US/security/advisories/mfsa2020-55/
- https://www.mozilla.org/en-US/security/advisories/mfsa2020-56/
* Thunderbird and Firedox supports automatic updating to the latest available version.
Update instructions (Thunderbird):
Update instructions (Firefox):