USN-3919-1: Firefox vulnerabilities
Two security issues were discovered in the JavaScript engine in Firefox. If a user were tricked in to opening a specially crafted website, an attacker could exploit this by causing a denial of service, or executing arbitrary code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-3919-1?
The severity of USN-3919-1 is high.
How can an attacker exploit the vulnerabilities in USN-3919-1?
An attacker can exploit the vulnerabilities in USN-3919-1 by tricking a user into opening a specially crafted website, resulting in a denial of service or execution of arbitrary code.
What versions of Firefox are affected by USN-3919-1?
Versions 66.0.1+build1-0ubuntu0.18.10.1, 66.0.1+build1-0ubuntu0.18.04.1, 66.0.1+build1-0ubuntu0.16.04.1, and 66.0.1+build1-0ubuntu0.14.04.1 of Firefox are affected by USN-3919-1.
How do I fix the vulnerabilities in USN-3919-1?
To fix the vulnerabilities in USN-3919-1, update Firefox to version 66.0.1+build1-0ubuntu0.18.10.1, 66.0.1+build1-0ubuntu0.18.04.1, 66.0.1+build1-0ubuntu0.16.04.1, or 66.0.1+build1-0ubuntu0.14.04.1.
Where can I find more information about USN-3919-1?
You can find more information about USN-3919-1 at the following references: [CVE-2019-9810](https://ubuntu.com/security/CVE-2019-9810), [CVE-2019-9813](https://ubuntu.com/security/CVE-2019-9813), [USN-3927-1](https://ubuntu.com/security/notices/USN-3927-1).