diff options
| author | Ian Eure <ian@retrospec.tv> | 2025-04-02 15:50:38 -0700 |
|---|---|---|
| committer | Ian Eure <ian@retrospec.tv> | 2025-04-03 16:52:15 -0700 |
| commit | f664a9377deed2c9e644b53a0b497153c7e7a41f (patch) | |
| tree | acab65dd8c6a83d788aef103fa4ad96154b754fc /gnu/packages/diffoscope.scm | |
| parent | 538fc4917f55cb2ab0b7c090de00855fa421db69 (diff) | |
gnu: librewolf: Update to 137.0-1 [security fixes].
Contains fixes for:
CVE-2025-3028: Use-after-free triggered by XSLTProcessor
CVE-2025-3031: JIT optimization bug with different stack slot sizes
CVE-2025-3032: Leaking file descriptors from the fork server
CVE-2025-3029: URL bar spoofing via non-BMP Unicode characters
CVE-2025-3035: Tab title disclosure across pages when using AI chatbot
CVE-2025-3033: Opening local .url files could lead to another file
being opened
CVE-2025-3030: Memory safety bugs fixed in Firefox 137, Thunderbird
137, Firefox ESR 128.9, and Thunderbird 128.9
CVE-2025-3034: Memory safety bugs fixed in Firefox 137 and Thunderbird
137
* gnu/packages/librewolf.scm (librewolf): Update to 137.0-1.
Change-Id: I23d8cbefc242e57c19b4e98660fd22bd1dda8d6a
Diffstat (limited to 'gnu/packages/diffoscope.scm')
0 files changed, 0 insertions, 0 deletions
