[Git][security-tracker-team/security-tracker][master] firefox fixed in sid
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Fri Aug 22 08:14:36 BST 2025
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
c1adf752 by Moritz Muehlenhoff at 2025-08-22T09:14:07+02:00
firefox fixed in sid
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -850,7 +850,7 @@ CVE-2025-55029 (Malicious scripts could bypass the popup blocker to spam new tab
CVE-2025-55028 (Malicious scripts utilizing repetitive JavaScript alerts could prevent ...)
NOT-FOR-US: Firefox for iOS
CVE-2025-9187 (Memory safety bugs present in Firefox 141 and Thunderbird 141. Some of ...)
- - firefox <unfixed>
+ - firefox 142.0-1
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-64/#CVE-2025-9187
CVE-2025-9186 (Spoofing issue in the Address Bar component of Firefox Focus for Andro ...)
- firefox <not-affected> (Specific to Firefox Focus on Android)
@@ -858,23 +858,23 @@ CVE-2025-9186 (Spoofing issue in the Address Bar component of Firefox Focus for
CVE-2025-9185 (Memory safety bugs present in Firefox ESR 115.26, Firefox ESR 128.13, ...)
{DSA-5980-1 DLA-4277-1}
- firefox-esr 128.14.0esr-1
- - firefox <unfixed>
+ - firefox 142.0-1
- thunderbird 1:128.14.0esr-1
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-66/#CVE-2025-9185
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-64/#CVE-2025-9185
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-71/#CVE-2025-9185
CVE-2025-9184 (Memory safety bugs present in Firefox ESR 140.1, Thunderbird ESR 140.1 ...)
- - firefox <unfixed>
+ - firefox 142.0-1
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-64/#CVE-2025-9184
CVE-2025-9183 (Spoofing issue in the Address Bar component. This vulnerability affect ...)
- - firefox <unfixed>
+ - firefox 142.0-1
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-64/#CVE-2025-9183
CVE-2025-9182 ('Denial-of-service due to out-of-memory in the Graphics: WebRender com ...)
- - firefox <unfixed>
+ - firefox 142.0-1
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-64/#CVE-2025-9182
CVE-2025-9181 (Uninitialized memory in the JavaScript Engine component. This vulnerab ...)
{DSA-5980-1 DLA-4277-1}
- - firefox <unfixed>
+ - firefox 142.0-1
- firefox-esr 128.14.0esr-1
- thunderbird 1:128.14.0esr-1
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-66/#CVE-2025-9181
@@ -882,7 +882,7 @@ CVE-2025-9181 (Uninitialized memory in the JavaScript Engine component. This vul
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-71/#CVE-2025-9181
CVE-2025-9180 ('Same-origin policy bypass in the Graphics: Canvas2D component.' This ...)
{DSA-5980-1 DLA-4277-1}
- - firefox <unfixed>
+ - firefox 142.0-1
- firefox-esr 128.14.0esr-1
- thunderbird 1:128.14.0esr-1
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-66/#CVE-2025-9180
@@ -890,7 +890,7 @@ CVE-2025-9180 ('Same-origin policy bypass in the Graphics: Canvas2D component.'
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-71/#CVE-2025-9180
CVE-2025-9179 (An attacker was able to perform memory corruption in the GMP process w ...)
{DSA-5980-1 DLA-4277-1}
- - firefox <unfixed>
+ - firefox 142.0-1
- firefox-esr 128.14.0esr-1
- thunderbird 1:128.14.0esr-1
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2025-66/#CVE-2025-9179
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1adf75249e19c8b7d3bb77f594e9f11e570cdb8
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1adf75249e19c8b7d3bb77f594e9f11e570cdb8
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250822/9ab5f117/attachment.htm>
More information about the debian-security-tracker-commits
mailing list