firefox-esr: Multiple vulnerabilities (CVE-2017-7843, CVE-2017-7845)
CVE-2017-7845: Buffer overflow when drawing and validating elements
with ANGLE library using Direct 3D 9
CVE-2017-7843: Web worker in Private Browsing mode can write
IndexedDB data
Fixed In Version:
Firefox ESR 52.5.2
References:
https://www.mozilla.org/en-US/security/advisories/mfsa2017-28/
(from redmine: issue id 8325, created on 2017-12-20, closed on 2018-01-25)
- Relations:
- child #8326 (closed)
- child #8327 (closed)