28a1a8f674c3bb8ae62db0319ab12c67c3eebd600b80ca4951f9e9fe32177f6f
https://www.mozilla.org/en-US/firefox/139.0/releasenotes/ MFSA 2025-42 (bsc#1243353) * MFSA-TMP-2025-0001 (bmo#1962421) Double-free in libvpx encoder * CVE-2025-5263 (bmo#1960745) Error handling for script execution was incorrectly isolated from web content * CVE-2025-5264 (bmo#1950001) Potential local code execution in “Copy as cURL” command * CVE-2025-5265 (bmo#1962301) Potential local code execution in “Copy as cURL” command * CVE-2025-5266 (bmo#1965628) Script element events leaked cross-origin resource status * CVE-2025-5270 (bmo#1910298) SNI was sometimes unencrypted * CVE-2025-5271 (bmo#1920348) Devtools' preview ignored CSP headers * CVE-2025-5267 (bmo#1954137) Clickjacking vulnerability could have led to leaking saved payment card details * CVE-2025-5268 (bmo#1950136, bmo#1958121, bmo#1960499, bmo#1962634) Memory safety bugs fixed in Firefox 139, Thunderbird 139, Firefox ESR 128.11, and Thunderbird 128.11 * CVE-2025-5272 (bmo#1726254, bmo#1742738, bmo#1960121) Memory safety bugs fixed in Firefox 139 and Thunderbird 139 OBS-URL: https://build.opensuse.org/package/show/mozilla:Factory/MozillaFirefox?expand=0&rev=1225
Description
No description provided
Languages
Shell
85%
Roff
10%
Perl
3.4%
JavaScript
1.6%