Security News > 2020 > February > Mozilla Firefox 73 Browser Update Fixes High-Severity RCE Bugs

Mozilla Firefox 73 Browser Update Fixes High-Severity RCE Bugs
2020-02-12 19:14

The patched version of Mozilla's browser, launched on Tuesday, is Firefox 73 and Firefox ESR 68.5.

One of the vulnerabilities, tracked as CVE-2020-6800, was fixed in a previous release of Firefox 72 and the current Firefox ESR 68.5 update on Tuesday.

Another high-severity flaw was fixed in Firefox 73, and also has a score of 8.8 out of 10 on the CVSS v3 scale, making it high severity.

Beyond security fixes, Mozilla also noted that users with 0patch security software may encounter crashes at startup after updating to Firefox 73.

The February update is less severe than Mozilla's January Firefox 72 browser release, where it patched a critical vulnerability actively being exploited in the wild.


News URL

https://threatpost.com/mozilla-firefox-73-browser-update-fixes-high-severity-rce-bugs/152831/

Related Vulnerability

DATE CVE VULNERABILITY TITLE RISK
2020-03-02 CVE-2020-6800 Out-of-bounds Write vulnerability in multiple products
Mozilla developers and community members reported memory safety bugs present in Firefox 72 and Firefox ESR 68.4.
network
low complexity
mozilla canonical CWE-787
8.8

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Mozilla 29 13 629 582 266 1490