• [SECURITY] [DSA 5910-1] firefox-esr security update

    From Moritz Muehlenhoff@21:1/5 to All on Wed Apr 30 23:40:02 2025
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-5910-1 [email protected] https://www.debian.org/security/ Moritz Muehlenhoff
    April 30, 2025 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : firefox-esr
    CVE ID : CVE-2025-4083 CVE-2025-4087 CVE-2025-4091 CVE-2025-4093

    Multiple security issues have been found in the Mozilla Firefox web
    browser, which could potentially result in the execution of arbitrary
    code or a bypass of sandbox restrictions.

    For the stable distribution (bookworm), these problems have been fixed in version 128.10.0esr-1~deb12u1.

    We recommend that you upgrade your firefox-esr packages.

    For the detailed security status of firefox-esr please refer to
    its security tracker page at: https://security-tracker.debian.org/tracker/firefox-esr

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: [email protected]
    -----BEGIN PGP SIGNATURE-----

    iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmgSlOsACgkQEMKTtsN8 TjbW7hAAst8Uo+BCEy/7MSFgKnH9E0OHIBUsnR2bzLq0nY6xJcg9xkT+44TUt+Yl JYb07P6CPqbUwLBJjD6ZOM67DrkH8TXD6Y8yCfzb9GeN5aZFbomXdO1B/y+7OOJi MCRL+oyzyxejwhjpg9hfGYw7M2pzYEreihotJSqCnQ2/m1TlhC8/Y1JbgwAddzSn +xi/gU1gmwrl5LLw6KQZMMaL1BT3UwJ9e2fGJJpyyGXh+u8mVcNYYTC4cb/4rA6R s5IigQ6vnY01f81nuzXseuVxjdDjVwWmwLMl0LgZ0DovkhSk0mMxn7X7UipEv4DL Ow9bZXfRwNPkjNj47b9c7DX9KrM65lApsVIxigx7OEEbgaL85ePo8nfEQO9PAaKN mfeorzj89BC1kM/u3zFqEqfC2x3vPeBLXsLrEOdu482eok8Fek/KDigBPFCI+Dda 8TwZYoAAs8Zh2xtwVesUA039OWtUDnq8IohhrJqc+OoiHFHZ+F7o94z1NcXCyjCp sCvPZW37DJnI5UqcdNveyC76odUHDJt56yI1/KVjqtG6FLvBOqHwnrPHqd4uAxGU WwOjMJLdnzv1ZdOT4X74wLsxcJS01NlgwAWwKOfPOEz7PRHyhZhF5G+oennOZ9CD l3c/mcOiexTWAJ/qP5q2QXSFERAVOdQCGRyq7NWJrWOyZ577Nlc=
    =CjTv
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)