Re: [BLFS Trac] #23111: firefox-140.10.1esr and js-140.10.1 (spidermonkey) (was: firefox-140.10.0esr and js-140.10.0 (spidermonkey))

"BLFS Trac" ([email protected] via blfs-book Mailing List) <[email protected]>
Newsgroups gmane.linux.lfs.beyond.book
Message-ID <[email protected]>
#23111: firefox-140.10.1esr and js-140.10.1 (spidermonkey)
-------------------------+------------------------------
 Reporter:  (none)       |       Owner:  Douglas R. Reno
     Type:  enhancement  |      Status:  assigned
 Priority:  high         |   Milestone:  13.1
Component:  BOOK         |     Version:  git
 Severity:  normal       |  Resolution:
 Keywords:               |
-------------------------+------------------------------
Changes (by Joe Locash):

 * summary:  firefox-140.10.0esr and js-140.10.0 (spidermonkey) =>
     firefox-140.10.1esr and js-140.10.1 (spidermonkey)

Comment:

 Security fixes for 140.10.1ESR:
  - CVE-2026-7320: Information disclosure due to incorrect boundary
 conditions in the Audio/Video component (high)
  - CVE-2026-7321: Sandbox escape due to incorrect boundary conditions in
 the WebRTC: Networking component (moderate)
  - CVE-2026-7322: Memory safety bugs fixed in Firefox ESR 115.35.1,
 Firefox ESR 140.10.1, Thunderbird ESR 140.10.1, Firefox 150.0.1 and
 Thunderbird 150.0.1 (critical)
  - CVE-2026-7323: Memory safety bugs fixed in Firefox ESR 140.10.1,
 Thunderbird ESR 140.10.1, Firefox 150.0.1 and Thunderbird 150.0.1 (high)

 https://www.mozilla.org/en-US/security/advisories/mfsa2026-36/
-- 
Ticket URL: <https://wiki.linuxfromscratch.org/blfs/ticket/23111#comment:6>
BLFS Trac <https://wiki.linuxfromscratch.org/blfs/>
Beyond Linux From Scratch

-- 
http://lists.linuxfromscratch.org/sympa/info/blfs-book
Unsubscribe: See the above information page
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.