Fedora 31: firefox FEDORA-2020-65b80edd9b
Feb21
on February 21, 2020
at 9:25 pm
Posted In: Uncategorized
– New upstream release (73.0.1)
Comment
– New upstream release (73.0.1)
This update backports a patch for CVE-2020-8112.
It was discovered that pysaml2, a Python implementation of SAML to be used in a WSGI environment, was susceptible to XML signature wrapping attacks, which could result in a bypass of signature verification.
Multiple security issues were discovered in Pillow, a Python imaging library, which could result in denial of service and potentially the execution of arbitrary code if malformed PCX, FLI, SGI or TIFF images are processed.
59 queries. 8.75 mb Memory usage. 0.671 seconds.