Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2021:2206 - Security Advisory
Issued:
2021-06-02
Updated:
2021-06-02

RHSA-2021:2206 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: firefox security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for firefox is now available for Red Hat Enterprise Linux 7.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

[Updated 8 June 2021]
Previously, this erratum was marked as having a security impact of Critical. This was incorrect; the security impact of this erratum has been changed to Important, to correctly reflect the highest impact rating of CVE fixes included in this release. No changes have been made to packages.

Description

Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.

This update upgrades Firefox to version 78.11.0 ESR.

Security Fix(es):

  • Mozilla: Memory safety bugs fixed in Firefox 89 and Firefox ESR 78.11 (CVE-2021-29967)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

After installing the update, Firefox must be restarted for the changes to take effect.

Affected Products

  • Red Hat Enterprise Linux Server 7 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 x86_64
  • Red Hat Enterprise Linux Workstation 7 x86_64
  • Red Hat Enterprise Linux Desktop 7 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 7 s390x
  • Red Hat Enterprise Linux for Power, big endian 7 ppc64
  • Red Hat Enterprise Linux for Power, little endian 7 ppc64le
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 s390x
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 ppc64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 ppc64le

Fixes

  • BZ - 1966831 - CVE-2021-29967 Mozilla: Memory safety bugs fixed in Firefox 89 and Firefox ESR 78.11

CVEs

  • CVE-2021-29967

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server 7

SRPM
firefox-78.11.0-3.el7_9.src.rpm SHA-256: ba47d83c018a5f1c9cb9611946f40860a67ec7f3811840c48f87ea5e1ffab4f8
x86_64
firefox-78.11.0-3.el7_9.i686.rpm SHA-256: 934a1809def8faa53ef337768181540718d962f3de26a885df16e3e12812e84e
firefox-78.11.0-3.el7_9.x86_64.rpm SHA-256: a896f778baf95cd8270e668e0f111578f68c07a245b9f29a13f4ced0c33be40d
firefox-debuginfo-78.11.0-3.el7_9.x86_64.rpm SHA-256: aafc56cd9e018782ca4e48af124b1d15e8c5070264566d3510067a367a5934e3

Red Hat Enterprise Linux Server - Extended Life Cycle Support 7

SRPM
firefox-78.11.0-3.el7_9.src.rpm SHA-256: ba47d83c018a5f1c9cb9611946f40860a67ec7f3811840c48f87ea5e1ffab4f8
x86_64
firefox-78.11.0-3.el7_9.i686.rpm SHA-256: 934a1809def8faa53ef337768181540718d962f3de26a885df16e3e12812e84e
firefox-78.11.0-3.el7_9.x86_64.rpm SHA-256: a896f778baf95cd8270e668e0f111578f68c07a245b9f29a13f4ced0c33be40d
firefox-debuginfo-78.11.0-3.el7_9.x86_64.rpm SHA-256: aafc56cd9e018782ca4e48af124b1d15e8c5070264566d3510067a367a5934e3

Red Hat Enterprise Linux Workstation 7

SRPM
firefox-78.11.0-3.el7_9.src.rpm SHA-256: ba47d83c018a5f1c9cb9611946f40860a67ec7f3811840c48f87ea5e1ffab4f8
x86_64
firefox-78.11.0-3.el7_9.i686.rpm SHA-256: 934a1809def8faa53ef337768181540718d962f3de26a885df16e3e12812e84e
firefox-78.11.0-3.el7_9.x86_64.rpm SHA-256: a896f778baf95cd8270e668e0f111578f68c07a245b9f29a13f4ced0c33be40d
firefox-debuginfo-78.11.0-3.el7_9.x86_64.rpm SHA-256: aafc56cd9e018782ca4e48af124b1d15e8c5070264566d3510067a367a5934e3

Red Hat Enterprise Linux Desktop 7

SRPM
firefox-78.11.0-3.el7_9.src.rpm SHA-256: ba47d83c018a5f1c9cb9611946f40860a67ec7f3811840c48f87ea5e1ffab4f8
x86_64
firefox-78.11.0-3.el7_9.i686.rpm SHA-256: 934a1809def8faa53ef337768181540718d962f3de26a885df16e3e12812e84e
firefox-78.11.0-3.el7_9.x86_64.rpm SHA-256: a896f778baf95cd8270e668e0f111578f68c07a245b9f29a13f4ced0c33be40d
firefox-debuginfo-78.11.0-3.el7_9.x86_64.rpm SHA-256: aafc56cd9e018782ca4e48af124b1d15e8c5070264566d3510067a367a5934e3

Red Hat Enterprise Linux for IBM z Systems 7

SRPM
firefox-78.11.0-3.el7_9.src.rpm SHA-256: ba47d83c018a5f1c9cb9611946f40860a67ec7f3811840c48f87ea5e1ffab4f8
s390x
firefox-78.11.0-3.el7_9.s390x.rpm SHA-256: 0b76bf6a4c612acfe80d4e038e174c17d5876f683f2c0095b658a4e34d8abf76
firefox-debuginfo-78.11.0-3.el7_9.s390x.rpm SHA-256: dcbf9f8fdb6b919ddf8904521d239aca884ed5538fd853e9812d42053f213576

Red Hat Enterprise Linux for Power, big endian 7

SRPM
firefox-78.11.0-3.el7_9.src.rpm SHA-256: ba47d83c018a5f1c9cb9611946f40860a67ec7f3811840c48f87ea5e1ffab4f8
ppc64
firefox-78.11.0-3.el7_9.ppc64.rpm SHA-256: eb6ef60337c1dfe2bad55c757cb4b232e08bb40ec942899e3e434bf7ff9b49ff
firefox-debuginfo-78.11.0-3.el7_9.ppc64.rpm SHA-256: 2e46ecc9e0df3bec1602bbef116e8f8b68d02283cbbaf47d62c7f07964182b71

Red Hat Enterprise Linux for Power, little endian 7

SRPM
firefox-78.11.0-3.el7_9.src.rpm SHA-256: ba47d83c018a5f1c9cb9611946f40860a67ec7f3811840c48f87ea5e1ffab4f8
ppc64le
firefox-78.11.0-3.el7_9.ppc64le.rpm SHA-256: 9c4571af35b5c528cbff34d16850b34d27ba72275e085781f387516210b961c8
firefox-debuginfo-78.11.0-3.el7_9.ppc64le.rpm SHA-256: 4a5365354d09dd8a4400ac28632f025960f97c73271bbb9a20e79d4291a18344

Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7

SRPM
firefox-78.11.0-3.el7_9.src.rpm SHA-256: ba47d83c018a5f1c9cb9611946f40860a67ec7f3811840c48f87ea5e1ffab4f8
s390x
firefox-78.11.0-3.el7_9.s390x.rpm SHA-256: 0b76bf6a4c612acfe80d4e038e174c17d5876f683f2c0095b658a4e34d8abf76
firefox-debuginfo-78.11.0-3.el7_9.s390x.rpm SHA-256: dcbf9f8fdb6b919ddf8904521d239aca884ed5538fd853e9812d42053f213576

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7

SRPM
firefox-78.11.0-3.el7_9.src.rpm SHA-256: ba47d83c018a5f1c9cb9611946f40860a67ec7f3811840c48f87ea5e1ffab4f8
ppc64
firefox-78.11.0-3.el7_9.ppc64.rpm SHA-256: eb6ef60337c1dfe2bad55c757cb4b232e08bb40ec942899e3e434bf7ff9b49ff
firefox-debuginfo-78.11.0-3.el7_9.ppc64.rpm SHA-256: 2e46ecc9e0df3bec1602bbef116e8f8b68d02283cbbaf47d62c7f07964182b71

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7

SRPM
firefox-78.11.0-3.el7_9.src.rpm SHA-256: ba47d83c018a5f1c9cb9611946f40860a67ec7f3811840c48f87ea5e1ffab4f8
ppc64le
firefox-78.11.0-3.el7_9.ppc64le.rpm SHA-256: 9c4571af35b5c528cbff34d16850b34d27ba72275e085781f387516210b961c8
firefox-debuginfo-78.11.0-3.el7_9.ppc64le.rpm SHA-256: 4a5365354d09dd8a4400ac28632f025960f97c73271bbb9a20e79d4291a18344

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility