{"id":13043,"date":"2013-04-02T13:30:25","date_gmt":"2013-04-02T20:30:25","guid":{"rendered":"http:\/\/www.intego.com\/mac-security-blog\/?p=13043"},"modified":"2016-10-06T12:30:34","modified_gmt":"2016-10-06T19:30:34","slug":"mozilla-patches-11-critical-flaws-with-firefox-20-update","status":"publish","type":"post","link":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/","title":{"rendered":"Mozilla Patches 11 Critical Flaws with Firefox 20 Update"},"content":{"rendered":"<p>The Mozilla Foundation has <a href=\"https:\/\/www.mozilla.org\/security\/known-vulnerabilities\/firefox.html#firefox20\" target=\"_blank\">released<\/a> Firefox 20 for Mac OS X with patches for 11 critical flaws. Mozilla identifies critical-impacting flaws as those that can be used to run attacker code and install software, requiring no user interaction beyond normal browsing. Therefore, this update is highly recommended and should be applied as soon as possible.<\/p>\n<p>Following is a list of the security issues resolved in this update:<\/p>\n<ul>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-40.html\" target=\"_blank\">MFSA 2013-40<\/a>:\u00a0Out-of-bounds array read in CERT_DecodeCertPackage<\/li>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-39.html\" target=\"_blank\">MFSA 2013-39<\/a>: Memory corruption while rendering grayscale PNG images<\/li>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-38.html\" target=\"_blank\">MFSA 2013-38<\/a>: Cross-site scripting (XSS) using timed history navigations<\/li>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-37.html\" target=\"_blank\">MFSA 2013-37<\/a>: Bypass of tab-modal dialog origin disclosure<\/li>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-36.html\" target=\"_blank\">MFSA 2013-36<\/a>: Bypass of SOW protections allows cloning of protected nodes<\/li>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-35.html\" target=\"_blank\">MFSA 2013-35<\/a>: WebGL crash with Mesa graphics driver on Linux<\/li>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-34.html\" target=\"_blank\">MFSA 2013-34<\/a>: Privilege escalation through Mozilla Updater<\/li>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-33.html\" target=\"_blank\">MFSA 2013-33<\/a>: World read and write access to app_tmp directory<\/li>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-32.html\" target=\"_blank\">MFSA 2013-32<\/a>: Privilege escalation through Mozilla Maintenance Service<\/li>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-31.html\" target=\"_blank\">MFSA 2013-31<\/a>: Out-of-bounds write in Cairo library<\/li>\n<li><a href=\"https:\/\/www.mozilla.org\/security\/announce\/2013\/mfsa2013-30.html\" target=\"_blank\">MFSA 2013-30<\/a>: Miscellaneous memory safety hazards (rv:20.0 \/ rv:17.0.5)<\/li>\n<\/ul>\n<p>To get the latest version, you can update Firefox on your Mac by using the browser\u2019s internal updater (go to Firefox &gt; About Firefox &gt; Check for Updates). Or you can head over to Mozilla.org to\u00a0<a href=\"https:\/\/www.mozilla.org\/en-US\/firefox\/new\/\" target=\"_blank\">download Firefox 20<\/a> for Mac.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Mozilla Foundation has released Firefox 20 for Mac OS X with patches for 11 critical flaws. Mozilla identifies critical-impacting flaws as those that can be used to run attacker code and install software, requiring no user interaction beyond normal browsing. Therefore, this update is highly recommended and should be applied as soon as possible. [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":9917,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"spay_email":"","jetpack_publicize_message":"","jetpack_is_tweetstorm":false},"categories":[5],"tags":[56,281,207,201],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v17.4 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<meta name=\"description\" content=\"The Mozilla Foundation has released Firefox 20 for Mac OS X with patches for 11 critical flaws. Mozilla identifies critical-impacting flaws as those that\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Mozilla Patches 11 Critical Flaws with Firefox 20 Update - The Mac Security Blog\" \/>\n<meta property=\"og:description\" content=\"The Mozilla Foundation has released Firefox 20 for Mac OS X with patches for 11 critical flaws. Mozilla identifies critical-impacting flaws as those that\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/\" \/>\n<meta property=\"og:site_name\" content=\"The Mac Security Blog\" \/>\n<meta property=\"article:published_time\" content=\"2013-04-02T20:30:25+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2016-10-06T19:30:34+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2013\/01\/Firefox-Security-Update-Tile.png\" \/>\n\t<meta property=\"og:image:width\" content=\"400\" \/>\n\t<meta property=\"og:image:height\" content=\"260\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Derek Erwin\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"1 minute\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#organization\",\"name\":\"Intego\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/\",\"sameAs\":[],\"logo\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#logo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png\",\"contentUrl\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png\",\"width\":875,\"height\":875,\"caption\":\"Intego\"},\"image\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#logo\"}},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#website\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/\",\"name\":\"The Mac Security Blog\",\"description\":\"Keep Macs safe from the dangers of the Internet\",\"publisher\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.intego.com\/mac-security-blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#primaryimage\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2013\/01\/Firefox-Security-Update-Tile.png\",\"contentUrl\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2013\/01\/Firefox-Security-Update-Tile.png\",\"width\":\"400\",\"height\":\"260\",\"caption\":\"Firefox browser security updates\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#webpage\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/\",\"name\":\"Mozilla Patches 11 Critical Flaws with Firefox 20 Update - The Mac Security Blog\",\"isPartOf\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#primaryimage\"},\"datePublished\":\"2013-04-02T20:30:25+00:00\",\"dateModified\":\"2016-10-06T19:30:34+00:00\",\"description\":\"The Mozilla Foundation has released Firefox 20 for Mac OS X with patches for 11 critical flaws. Mozilla identifies critical-impacting flaws as those that\",\"breadcrumb\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.intego.com\/mac-security-blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Mozilla Patches 11 Critical Flaws with Firefox 20 Update\"}]},{\"@type\":\"Article\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#webpage\"},\"author\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/d7586ee278e291223dbae05ec1d95812\"},\"headline\":\"Mozilla Patches 11 Critical Flaws with Firefox 20 Update\",\"datePublished\":\"2013-04-02T20:30:25+00:00\",\"dateModified\":\"2016-10-06T19:30:34+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#webpage\"},\"wordCount\":210,\"commentCount\":1,\"publisher\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#organization\"},\"image\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2013\/01\/Firefox-Security-Update-Tile.png\",\"keywords\":[\"Firefox\",\"Firefox 20\",\"Mozilla\",\"Security Updates\"],\"articleSection\":[\"Security News\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#respond\"]}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/d7586ee278e291223dbae05ec1d95812\",\"name\":\"Derek Erwin\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#personlogo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/f88b4bb259f7d5b1d10884ffa4b3c126?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/f88b4bb259f7d5b1d10884ffa4b3c126?s=96&d=mm&r=g\",\"caption\":\"Derek Erwin\"},\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/author\/derek-erwin\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"description":"The Mozilla Foundation has released Firefox 20 for Mac OS X with patches for 11 critical flaws. Mozilla identifies critical-impacting flaws as those that","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/","og_locale":"en_US","og_type":"article","og_title":"Mozilla Patches 11 Critical Flaws with Firefox 20 Update - The Mac Security Blog","og_description":"The Mozilla Foundation has released Firefox 20 for Mac OS X with patches for 11 critical flaws. Mozilla identifies critical-impacting flaws as those that","og_url":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/","og_site_name":"The Mac Security Blog","article_published_time":"2013-04-02T20:30:25+00:00","article_modified_time":"2016-10-06T19:30:34+00:00","og_image":[{"width":"400","height":"260","url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2013\/01\/Firefox-Security-Update-Tile.png","type":"image\/png"}],"twitter_card":"summary_large_image","twitter_misc":{"Written by":"Derek Erwin","Est. reading time":"1 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Organization","@id":"https:\/\/www.intego.com\/mac-security-blog\/#organization","name":"Intego","url":"https:\/\/www.intego.com\/mac-security-blog\/","sameAs":[],"logo":{"@type":"ImageObject","@id":"https:\/\/www.intego.com\/mac-security-blog\/#logo","inLanguage":"en-US","url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png","contentUrl":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png","width":875,"height":875,"caption":"Intego"},"image":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#logo"}},{"@type":"WebSite","@id":"https:\/\/www.intego.com\/mac-security-blog\/#website","url":"https:\/\/www.intego.com\/mac-security-blog\/","name":"The Mac Security Blog","description":"Keep Macs safe from the dangers of the Internet","publisher":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.intego.com\/mac-security-blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"ImageObject","@id":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#primaryimage","inLanguage":"en-US","url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2013\/01\/Firefox-Security-Update-Tile.png","contentUrl":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2013\/01\/Firefox-Security-Update-Tile.png","width":"400","height":"260","caption":"Firefox browser security updates"},{"@type":"WebPage","@id":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#webpage","url":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/","name":"Mozilla Patches 11 Critical Flaws with Firefox 20 Update - The Mac Security Blog","isPartOf":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#primaryimage"},"datePublished":"2013-04-02T20:30:25+00:00","dateModified":"2016-10-06T19:30:34+00:00","description":"The Mozilla Foundation has released Firefox 20 for Mac OS X with patches for 11 critical flaws. Mozilla identifies critical-impacting flaws as those that","breadcrumb":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.intego.com\/mac-security-blog\/"},{"@type":"ListItem","position":2,"name":"Mozilla Patches 11 Critical Flaws with Firefox 20 Update"}]},{"@type":"Article","@id":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#article","isPartOf":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#webpage"},"author":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/d7586ee278e291223dbae05ec1d95812"},"headline":"Mozilla Patches 11 Critical Flaws with Firefox 20 Update","datePublished":"2013-04-02T20:30:25+00:00","dateModified":"2016-10-06T19:30:34+00:00","mainEntityOfPage":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#webpage"},"wordCount":210,"commentCount":1,"publisher":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#organization"},"image":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#primaryimage"},"thumbnailUrl":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2013\/01\/Firefox-Security-Update-Tile.png","keywords":["Firefox","Firefox 20","Mozilla","Security Updates"],"articleSection":["Security News"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.intego.com\/mac-security-blog\/mozilla-patches-11-critical-flaws-with-firefox-20-update\/#respond"]}]},{"@type":"Person","@id":"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/d7586ee278e291223dbae05ec1d95812","name":"Derek Erwin","image":{"@type":"ImageObject","@id":"https:\/\/www.intego.com\/mac-security-blog\/#personlogo","inLanguage":"en-US","url":"https:\/\/secure.gravatar.com\/avatar\/f88b4bb259f7d5b1d10884ffa4b3c126?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f88b4bb259f7d5b1d10884ffa4b3c126?s=96&d=mm&r=g","caption":"Derek Erwin"},"url":"https:\/\/www.intego.com\/mac-security-blog\/author\/derek-erwin\/"}]}},"jetpack_featured_media_url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2013\/01\/Firefox-Security-Update-Tile.png","jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p4VAYd-3on","amp_enabled":true,"_links":{"self":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts\/13043"}],"collection":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/comments?post=13043"}],"version-history":[{"count":9,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts\/13043\/revisions"}],"predecessor-version":[{"id":13065,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts\/13043\/revisions\/13065"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/media\/9917"}],"wp:attachment":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/media?parent=13043"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/categories?post=13043"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/tags?post=13043"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}