diff options
| author | Ian Eure <ian@retrospec.tv> | 2025-04-07 17:14:27 -0700 |
|---|---|---|
| committer | Ian Eure <ian@retrospec.tv> | 2025-04-11 17:04:00 -0700 |
| commit | c224bf2dd1b388f4a4dd264ff88931f6355569e0 (patch) | |
| tree | 0e345a3728c320ef0768b8fff1f8da6f37031a8c /gnu/packages/ruby.scm | |
| parent | 1d846b89ca3100fb1c6387dfea3e052e9495cf55 (diff) | |
gnu: librewolf: Update to 137.0.1-1 [security fixes].
New upstream release. Contains fixes for:
CVE-2025-3028: Use-after-free triggered by XSLTProcessor
CVE-2025-3031: JIT optimization bug with different stack slot sizes
CVE-2025-3032: Leaking file descriptors from the fork server
CVE-2025-3029: URL bar spoofing via non-BMP Unicode characters
CVE-2025-3035: Tab title disclosure across pages when using AI chatbot
CVE-2025-3033: Opening local .url files could lead to another file
being opened
CVE-2025-3030: Memory safety bugs fixed in Firefox 137, Thunderbird
137, Firefox ESR 128.9, and Thunderbird 128.9
CVE-2025-3034: Memory safety bugs fixed in Firefox 137 and Thunderbird
137
* gnu/packages/librewolf.scm (librewolf): Update to 137.0.1-1.
Change-Id: I418fadabc2375fe85e6d71f0fba198ae5983159c
Diffstat (limited to 'gnu/packages/ruby.scm')
0 files changed, 0 insertions, 0 deletions
