LANDesk Patch News Bulletin: Firefox Version 14.0.1 is Available for Download 19-JUL-2012

Version 1

    LANDesk Security and Patch News



    • (July 19, 2012) Mozilla has released Firefox version14.0.1. Fixed in this release of Firefox 14 are the following issues:

    MFSA 2012-56 Code execution through javascript: URLs

    MFSA 2012-55 feed: URLs with an innerURI inherit security context of page

    MFSA 2012-53 Content Security Policy 1.0 implementation errors cause data leakage

    MFSA 2012-52 JSDependentString::undepend string conversion results in memory corruption

    MFSA 2012-51 X-Frame-Options header ignored when duplicated

    MFSA 2012-50 Out of bounds read in QCMS

    MFSA 2012-49 Same-compartment Security Wrappers can be bypassed

    MFSA 2012-48 use-after-free in nsGlobalWindow::PageHidden

    MFSA 2012-47 Improper filtering of javascript in HTML feed-view

    MFSA 2012-46 XSS through data: URLs

    MFSA 2012-45 Spoofing issue with location

    MFSA 2012-44 Gecko memory corruption

    MFSA 2012-43 Incorrect URL displayed in addressbar through drag and drop

    MFSA 2012-42 Miscellaneous memory safety hazards



    New Vulnerabilities

    • Vulnerability ID – FIREFOXv14.0.1_ENU


    Changed Vulnerabilities

    • Vulnerability ID – FIREFOXv13.0.1_ENU (Added the replacement information.)



    New Patch Downloads

    • firefox setup 14.0.1_enu.exe


    Where to Send Feedback

    At LANDesk, we are constantly striving to improve our products and services and hope you find these changes reflective of our ongoing commitment to listen to you—our partners and customers—in providing the best possible solutions to meet your needs now and in the future.  Please continue to provide feedback by contacting our local support organization.


    Best regards,

    LANDesk Product Support


    Copyright © 2012 LANDesk Software.  All rights reserved. LANDesk is either a registered trademark or trademark of LANDesk Software, Ltd. or its affiliated entities in the United States and/or other countries. Other names or brands may be claimed as the property of others.

    Information in this document is provided for information purposes only.  The information presented here is subject to change without notice.  This information is not warranted to be error-free, nor subject to any other warranties or conditions, whether expressed orally or implied in law, including any implied warranties and conditions of merchantability or fitness for a particular purpose. LANDesk disclaims any liability with respect to this document and LANDesk has no responsibility or liability for any third party products of any content contained on any site referenced herein.  This document may not be reproduced or transmitted in any form or by any means, electronic or mechanical, for any purpose, without our prior written permission. For the most current product information, please visit