[DSA 5926-1] firefox-esr security update

Moritz Muehlenhoff <[email protected]>
Newsgroups gmane.linux.debian.user.security.announce
Message-ID <aDdJfQD/[email protected]>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-5926-1                   [email protected]
https://www.debian.org/security/                       Moritz Muehlenhoff
May 28, 2025                          https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : firefox-esr
CVE ID         : CVE-2025-5263 CVE-2025-5264 CVE-2025-5266 CVE-2025-5267 
                 CVE-2025-5268 CVE-2025-5269

Multiple security issues have been found in the Mozilla Firefox web
browser, which could potentially result in the execution of arbitrary
code or cross-origin leaks.

For the stable distribution (bookworm), these problems have been fixed in
version 128.11.0esr-1~deb12u1.

We recommend that you upgrade your firefox-esr packages.

For the detailed security status of firefox-esr please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/firefox-esr

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: [email protected]
-----BEGIN PGP SIGNATURE-----
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=8/0B
-----END PGP SIGNATURE-----
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.