203fccd935
MFSA 2022-04 (bsc#1195682) * CVE-2022-22753 (bmo#1732435) Privilege Escalation to SYSTEM on Windows via Maintenance Service * CVE-2022-22754 (bmo#1750565) Extensions could have bypassed permission confirmation during update * CVE-2022-22755 (bmo#1309630) XSL could have allowed JavaScript execution after a tab was closed * CVE-2022-22756 (bmo#1317873) Drag and dropping an image could have resulted in the dropped object being an executable * CVE-2022-22757 (bmo#1720098) Remote Agent did not prevent local websites from connecting * CVE-2022-22758 (bmo#1728742) tel: links could have sent USSD codes to the dialer on Firefox for Android * CVE-2022-22759 (bmo#1739957) Sandboxed iframes could have executed script if the parent appended elements * CVE-2022-22760 (bmo#1740985, bmo#1748503) Cross-Origin responses could be distinguished between script and non-script content-types * CVE-2022-22761 (bmo#1745566) frame-ancestors Content Security Policy directive was not enforced for framed extension pages * CVE-2022-22762 (bmo#1743931) JavaScript Dialogs could have been displayed over other domains on Firefox for Android * CVE-2022-22764 (bmo#1742682, bmo#1744165, bmo#1746545, bmo#1748210, bmo#1748279) OBS-URL: https://build.opensuse.org/package/show/mozilla:Factory/MozillaFirefox?expand=0&rev=958 |
||
---|---|---|
_constraints | ||
.gitattributes | ||
create-tar.sh | ||
firefox-97.0.source.tar.xz | ||
firefox-97.0.source.tar.xz.asc | ||
firefox-appdata.xml | ||
firefox-branded-icons.patch | ||
firefox-kde.patch | ||
firefox-mimeinfo.xml | ||
firefox-search-provider.ini | ||
firefox.1 | ||
firefox.js | ||
google-api-key | ||
l10n-97.0.tar.xz | ||
mozilla-aarch64-startup-crash.patch | ||
mozilla-api-key | ||
mozilla-bmo531915.patch | ||
mozilla-bmo849632.patch | ||
mozilla-bmo998749.patch | ||
mozilla-bmo1005535.patch | ||
mozilla-bmo1504834-part1.patch | ||
mozilla-bmo1504834-part2.patch | ||
mozilla-bmo1504834-part3.patch | ||
mozilla-bmo1504834-part4.patch | ||
mozilla-bmo1512162.patch | ||
mozilla-bmo1568145.patch | ||
mozilla-bmo1626236.patch | ||
mozilla-fix-aarch64-libopus.patch | ||
mozilla-fix-top-level-asm.patch | ||
mozilla-get-app-id | ||
mozilla-kde.patch | ||
mozilla-libavcodec58_91.patch | ||
mozilla-nongnome-proxies.patch | ||
mozilla-ntlm-full-path.patch | ||
mozilla-pgo.patch | ||
mozilla-reduce-rust-debuginfo.patch | ||
mozilla-s390-context.patch | ||
mozilla-s390x-skia-gradient.patch | ||
mozilla-silence-no-return-type.patch | ||
mozilla.keyring | ||
mozilla.sh.in | ||
MozillaFirefox-rpmlintrc | ||
MozillaFirefox.changes | ||
MozillaFirefox.desktop | ||
MozillaFirefox.spec | ||
spellcheck.js | ||
tar_stamps |