Moritz Muehlenhoff pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
c1adf752 by Moritz Muehlenhoff at 2025-08-22T09:14:07+02:00
firefox fixed in sid
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -850,7 +850,7 @@ CVE-2025-55029 (Malicious scripts could bypass the popup
blocker to spam new tab
CVE-2025-55028 (Malicious scripts utilizing repetitive JavaScript alerts could
prevent ...)
NOT-FOR-US: Firefox for iOS
CVE-2025-9187 (Memory safety bugs present in Firefox 141 and Thunderbird 141.
Some of ...)
- - firefox <unfixed>
+ - firefox 142.0-1
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-64/#CVE-2025-9187
CVE-2025-9186 (Spoofing issue in the Address Bar component of Firefox Focus
for Andro ...)
- firefox <not-affected> (Specific to Firefox Focus on Android)
@@ -858,23 +858,23 @@ CVE-2025-9186 (Spoofing issue in the Address Bar
component of Firefox Focus for
CVE-2025-9185 (Memory safety bugs present in Firefox ESR 115.26, Firefox ESR
128.13, ...)
{DSA-5980-1 DLA-4277-1}
- firefox-esr 128.14.0esr-1
- - firefox <unfixed>
+ - firefox 142.0-1
- thunderbird 1:128.14.0esr-1
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-66/#CVE-2025-9185
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-64/#CVE-2025-9185
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-71/#CVE-2025-9185
CVE-2025-9184 (Memory safety bugs present in Firefox ESR 140.1, Thunderbird
ESR 140.1 ...)
- - firefox <unfixed>
+ - firefox 142.0-1
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-64/#CVE-2025-9184
CVE-2025-9183 (Spoofing issue in the Address Bar component. This vulnerability
affect ...)
- - firefox <unfixed>
+ - firefox 142.0-1
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-64/#CVE-2025-9183
CVE-2025-9182 ('Denial-of-service due to out-of-memory in the Graphics:
WebRender com ...)
- - firefox <unfixed>
+ - firefox 142.0-1
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-64/#CVE-2025-9182
CVE-2025-9181 (Uninitialized memory in the JavaScript Engine component. This
vulnerab ...)
{DSA-5980-1 DLA-4277-1}
- - firefox <unfixed>
+ - firefox 142.0-1
- firefox-esr 128.14.0esr-1
- thunderbird 1:128.14.0esr-1
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-66/#CVE-2025-9181
@@ -882,7 +882,7 @@ CVE-2025-9181 (Uninitialized memory in the JavaScript
Engine component. This vul
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-71/#CVE-2025-9181
CVE-2025-9180 ('Same-origin policy bypass in the Graphics: Canvas2D
component.' This ...)
{DSA-5980-1 DLA-4277-1}
- - firefox <unfixed>
+ - firefox 142.0-1
- firefox-esr 128.14.0esr-1
- thunderbird 1:128.14.0esr-1
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-66/#CVE-2025-9180
@@ -890,7 +890,7 @@ CVE-2025-9180 ('Same-origin policy bypass in the Graphics:
Canvas2D component.'
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-71/#CVE-2025-9180
CVE-2025-9179 (An attacker was able to perform memory corruption in the GMP
process w ...)
{DSA-5980-1 DLA-4277-1}
- - firefox <unfixed>
+ - firefox 142.0-1
- firefox-esr 128.14.0esr-1
- thunderbird 1:128.14.0esr-1
NOTE:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-66/#CVE-2025-9179
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1adf75249e19c8b7d3bb77f594e9f11e570cdb8
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1adf75249e19c8b7d3bb77f594e9f11e570cdb8
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits