==========================================================================
Ubuntu Security Notice USN-4101-1
August 16, 2019
firefox vulnerability
==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
– Ubuntu 19.04
– Ubuntu 18.04 LTS
– Ubuntu 16.04 LTS
Summary:
A local attacker could obtain saved passwords.
Software Description:
– firefox: Mozilla Open Source web browser
Details:
It was discovered that passwords could be copied to the clipboard from the
“Saved Logins” dialog without entering the master password, even when a
master password has been set. A local attacker could potentially exploit
this to obtain saved passwords.
Update instructions:
The problem can be corrected by updating your system to the following
package versions:
Ubuntu 19.04:
firefox 68.0.2+build1-0ubuntu0.19.04.1
Ubuntu 18.04 LTS:
firefox 68.0.2+build1-0ubuntu0.18.04.1
Ubuntu 16.04 LTS:
firefox 68.0.2+build1-0ubuntu0.16.04.1
After a standard system update you need to restart Firefox to make
all the necessary changes.
References:
https://usn.ubuntu.com/4101-1
CVE-2019-11733
Package Information:
https://launchpad.net/ubuntu/+source/firefox/68.0.2+build1-0ubuntu0.19.04.1
https://launchpad.net/ubuntu/+source/firefox/68.0.2+build1-0ubuntu0.18.04.1
https://launchpad.net/ubuntu/+source/firefox/68.0.2+build1-0ubuntu0.16.04.1
—–BEGIN PGP SIGNATURE—–
iQEzBAEBCgAdFiEERN//5MGgCOgyKeIFYR+97NWUbg8FAl1XChMACgkQYR+97NWU
bg+EVgf+Mxxv4D0K0uxvM3caSmAcr5/Saq3BD8j/N/00P63/KC3aZn1zcnXhQ5FV
TsLT6hDtTI5n4rjwrjqkvMEfLwJSB+o2w3Cs7Lu1k0Ta/a9b9PvQv2s6bze135O9
TII4rWE8cwI+x3jme/eNTuuqByXgJIm684XiK4KNIQ2nOUlP5ePSaL003VlHKUGS
0ESdEAMgItUCua7PS9mORXBSzUaUL35znlc2Wfm5/ImUkpV6Q55pCLWh4rpQJjfl
iZOeZfOlctBUzQ4tKh8ci2/6N55ueMWMO7S86+Dbc6wgxnr/XurVknQa7oUmGzfc
XgypJB5g1lhdDYR0Cynrlu3DvFrRrA==
=tiC2
—–END PGP SIGNATURE—–
—