[Git][security-tracker-team/security-tracker][master] Track fixed version for firefox via unstable

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Sep 2 06:46:37 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
61117de5 by Salvatore Bonaccorso at 2026-09-02T07:45:30+02:00
Track fixed version for firefox via unstable

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -576,104 +576,104 @@ CVE-2024-10085 (CWE-770: Allocation of Resources Without Limits or Throttlingvul
 CVE-2023-54356 (Kyverno versions 1.9.4 and earlier support insecure 3DES cipher suites ...)
 	TODO: check
 CVE-2026-84145 (Internally found bugs present in Firefox 154, Firefox ESR 153.1, Firef ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	- firefox-esr 140.15.0esr-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84145
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-84/#CVE-2026-84145
 CVE-2026-84144 (Internally found bugs present in Firefox 154 and Firefox ESR 153.1. So ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84144
 CVE-2026-84143 (Internally found bugs present in Firefox 154, Firefox ESR 153.1 and Fi ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	- firefox-esr 140.15.0esr-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84143
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-84/#CVE-2026-84143
 CVE-2026-84142 (Internally found bugs present in Firefox 154. Some of these bugs showe ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84142
 CVE-2026-84141 (Integer overflow in the Graphics: ImageLib component. This vulnerabili ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84141
 CVE-2026-84140 (Site isolation issue in the DOM: Navigation component. This vulnerabil ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84140
 CVE-2026-84139 (Clickjacking issue in the DOM: Events component. This vulnerability wa ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84139
 CVE-2026-84138 (Denial-of-service in the PDF Viewer component. This vulnerability was  ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84138
 CVE-2026-84137 (Spoofing issue in the DOM: Core & HTML component. This vulnerability w ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84137
 CVE-2026-84136 (Other issue in the DOM: Navigation component. This vulnerability was f ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84136
 CVE-2026-84135 (Other issue in Firefox Focus for Android. This vulnerability was fixed ...)
 	- firefox <not-affected> (Only affects Firefox on Android)
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84135
 CVE-2026-84134 (Other issue in the Profile Backup component. This vulnerability was fi ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84134
 CVE-2026-84133 (Site isolation issue in the DOM: Push Subscriptions component. This vu ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84133
 CVE-2026-84132 (Information disclosure in the Networking: HTTP component. This vulnera ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84132
 CVE-2026-84131 (Privilege escalation due to invalid pointer in the Graphics component. ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	- firefox-esr 140.15.0esr-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84131
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-84/#CVE-2026-84131
 CVE-2026-84130 (Information disclosure in the Graphics: WebGPU component. This vulnera ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84130
 CVE-2026-84129 (Site isolation issue in the DOM: Navigation component. This vulnerabil ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84129
 CVE-2026-84128 (Privilege escalation in the WebDriver BiDi component. This vulnerabili ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84128
 CVE-2026-84127 (Information disclosure in the WebExtensions component in Firefox for A ...)
 	- firefox <not-affected> (Only affects Firefox on Android)
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84127
 CVE-2026-84126 (Incorrect boundary conditions in the Layout: Grid component. This vuln ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84126
 CVE-2026-84125 (Use-after-free in the DOM: Core & HTML component. This vulnerability w ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84125
 CVE-2026-84124 (Use-after-free in the DOM: Core & HTML component. This vulnerability w ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	- firefox-esr 140.15.0esr-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84124
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-84/#CVE-2026-84124
 CVE-2026-84123 (Privilege escalation due to use-after-free in the Graphics: WebGPU com ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84123
 CVE-2026-84122 (Use-after-free in the Audio/Video component. This vulnerability was fi ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	- firefox-esr 140.15.0esr-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84122
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-84/#CVE-2026-84122
 CVE-2026-84121 (Sandbox escape due to use-after-free in the DOM: Security component. T ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	- firefox-esr 140.15.0esr-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84121
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-84/#CVE-2026-84121
 CVE-2026-84120 (Use-after-free in the Audio/Video component. This vulnerability was fi ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	- firefox-esr 140.15.0esr-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84120
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-84/#CVE-2026-84120
 CVE-2026-84119 (Sandbox escape due to use-after-free in the DOM: Navigation component. ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	- firefox-esr 140.15.0esr-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84119
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-84/#CVE-2026-84119
 CVE-2026-84118 (Use-after-free in the JavaScript: GC component. This vulnerability was ...)
-	- firefox <unfixed>
+	- firefox 155.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/#CVE-2026-84118
 CVE-2026-84117 (Privilege escalation in Firefox for Android. This vulnerability was fi ...)
 	- firefox <not-affected> (Only affects Firefox on Android)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/61117de5ef289e990843324e93c1decc7f97e3c1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/61117de5ef289e990843324e93c1decc7f97e3c1
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260902/4c39a307/attachment.htm>


More information about the debian-security-tracker-commits mailing list