USN-6147-1: SpiderMonkey vulnerability
Several security issues were discovered in the SpiderMonkey JavaScript library. If a user were tricked into opening malicious JavaScript applications or processing malformed data, a remote attacker could exploit a variety of issues related to JavaScript security, including denial of service attacks, and arbitrary code execution.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this SpiderMonkey vulnerability?
The vulnerability ID for this SpiderMonkey vulnerability is USN-6147-1.
What is SpiderMonkey JavaScript library?
SpiderMonkey JavaScript is a JavaScript engine used by Mozilla Firefox and other Mozilla applications.
What are the consequences of this vulnerability?
If a user were tricked into opening malicious JavaScript applications or processing malformed data, a remote attacker could exploit a variety of issues related to JavaScript security, including denial of service attacks.
Which versions of Ubuntu are affected by this vulnerability?
Ubuntu versions 23.04, 22.10, and 22.04 are affected by this vulnerability.
How can I fix the SpiderMonkey vulnerability?
To fix the vulnerability, update the libmozjs-102-0 package to version 102.12.0-0ubuntu0.23.04.1 for Ubuntu 23.04, version 102.12.0-0ubuntu0.22.10.1 for Ubuntu 22.10, and version 102.12.0-0ubuntu0.22.04.1 for Ubuntu 22.04.