Woody Leonhard's no-bull news, tips and help for Windows, Office and more… Please disable your ad blocker – our (polite!) ads help keep AskWoody going!
Home icon Home icon Home icon Email icon RSS icon
  • Pale Moon Security Update

    This topic contains 0 replies, has 1 voice, and was last updated by  Kirsty 4 months, 4 weeks ago.

    • Author
      Posts
    • #193133 Reply

      Kirsty
      AskWoody MVP

      Pale Moon has released a security and stability update to their browser.

       
      Pale Moon: Release notes
      27.9.2 (2018-05-18)
      This is a security and stability update.

      Changes/fixes:

      We changed the language strings for softblocked items so people will cry less when we do our job.
      (CVE-2018-5174) Prevent potential SmartScreen bypass on Windows 10.
      (CVE-2018-5173) Fixed an issue in the Downloads panel improperly rendering some Unicode characters, allowing for the file name to be spoofed. This could be used to obscure the file extension of potentially executable files from user view in the panel.
      (CVE-2018-5177) Fixed a vulnerability in the XSLT component leading to a buffer overflow and crash if it occurs.
      (CVE-2018-5159) Fixed an integer overflow vulnerability in the Skia library resulting in possible out-of-bounds writes.
      (CVE-2018-5154) Fixed a use-after-free vulnerability while enumerating attributes during SVG animations with clip paths.
      (CVE-2018-5178) Fixed a buffer overflow during UTF8 to Unicode string conversion within JavaScript with extremely large amounts of data. This vulnerability requires the use of a malicious or vulnerable extension in order to occur.
      Fixed several stability issues (crashes) and memory safety hazards.

       
      From @martinbrinkmann on ghacks.net:
      The security fixes matches patches that Mozilla released for Firefox ESR 52.8 and Firefox 60. Some security patches are not integrated because they might fix issues that Pale Moon is not affected by; this is the case for features that are not part of Pale Moon.

      Read his full article here

      5 users thanked author for this post.

    Please follow the -Lounge Rules- no personal attacks, no swearing, and politics/religion are relegated to the Rants forum.

    Reply To: Pale Moon Security Update

    You can use BBCodes to format your content.
    Your account can't use Advanced BBCodes, they will be stripped before saving.

    Your information:


    Comments are closed.