MozillaFirefox/firefox-94.0.source.tar.xz.asc
Wolfgang Rosenauer 8739ae12dd - Mozilla Firefox 94.0
* https://www.mozilla.org/en-US/firefox/94.0/releasenotes
  MFSA 2021-48 (bsc#1192250)
  * CVE-2021-38503 (bmo#1729517)
    iframe sandbox rules did not apply to XSLT stylesheets
  * CVE-2021-38504 (bmo#1730156)
    Use-after-free in file picker dialog
  * CVE-2021-38505 (bmo#1730194)
    Windows 10 Cloud Clipboard may have recorded sensitive user data
  * CVE-2021-38506 (bmo#1730750)
    Firefox could be coaxed into going into fullscreen mode
    without notification or warning
  * CVE-2021-38507 (bmo#1730935)
    Opportunistic Encryption in HTTP2 could be used to bypass the
    Same-Origin-Policy on services hosted on other ports
  * MOZ-2021-0003 (bmo#1736886)
    Universal XSS in Firefox for Android via QR Code URLs
  * CVE-2021-38508 (bmo#1366818)
    Permission Prompt could be overlaid, resulting in user
    confusion and potential spoofing
  * MOZ-2021-0004 (bmo#1659155)
    Web Extensions could access pre-redirect URL when their
    context menu was triggered by a user
  * CVE-2021-38509 (bmo#1718571)
    Javascript alert box could have been spoofed onto an
    arbitrary domain
  * CVE-2021-38510 (bmo#1731779)
    Download Protections were bypassed by .inetloc files on Mac OS
  * MOZ-2021-0005 (bmo#1719203)
    'Copy Image Link' context menu action could have been abused

OBS-URL: https://build.opensuse.org/package/show/mozilla:Factory/MozillaFirefox?expand=0&rev=942
2021-11-02 13:51:34 +00:00

17 lines
833 B
Plaintext

-----BEGIN PGP SIGNATURE-----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=SGuZ
-----END PGP SIGNATURE-----