Dominique Leuenberger 953b85891d Accepting request 1059273 from mozilla:Factory
- Mozilla Firefox 109.0
  MFSA 2023-01 (bsc#1207119)
  * CVE-2023-23597 (bmo#1538028)
    Logic bug in process allocation allowed to read arbitrary
    files
  * CVE-2023-23598 (bmo#1800425)
    Arbitrary file read from GTK drag and drop on Linux
  * CVE-2023-23599 (bmo#1777800)
    Malicious command could be hidden in devtools output on
    Windows
  * CVE-2023-23600 (bmo#1787034)
    Notification permissions persisted between Normal and Private
    Browsing on Android
  * CVE-2023-23601 (bmo#1794268)
    URL being dragged from cross-origin iframe into same tab
    triggers navigation
  * CVE-2023-23602 (bmo#1800890)
    Content Security Policy wasn't being correctly applied to
    WebSockets in WebWorkers
  * CVE-2023-23603 (bmo#1800832)
    Calls to <code>console.log</code> allowed bypasing Content
    Security Policy via format directive
  * CVE-2023-23604 (bmo#1802346)
    Creation of duplicate <code>SystemPrincipal</code> from less
    secure contexts
  * CVE-2023-23605 (bmo#1764921, bmo#1802690, bmo#1806974)
    Memory safety bugs fixed in Firefox 109 and Firefox ESR 102.7
  * CVE-2023-23606 (bmo#1764974, bmo#1798591, bmo#1799201,
    bmo#1800446, bmo#1801248, bmo#1802100, bmo#1803393,
    bmo#1804626, bmo#1804971, bmo#1807004)

OBS-URL: https://build.opensuse.org/request/show/1059273
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/MozillaFirefox?expand=0&rev=387
2023-01-20 16:36:31 +00:00
2021-09-07 19:29:05 +00:00
2023-01-18 07:21:07 +00:00
2020-11-21 08:13:23 +00:00
2017-09-05 10:10:37 +00:00
2023-01-18 07:21:07 +00:00
2020-03-12 19:14:24 +00:00
2020-06-30 11:39:58 +00:00
2011-01-28 17:09:26 +00:00
2023-01-18 07:21:07 +00:00
2022-06-29 07:44:18 +00:00
2023-01-18 07:21:07 +00:00
2021-06-01 13:39:35 +00:00
2023-01-18 07:21:07 +00:00
2023-01-18 07:21:07 +00:00
2022-06-29 07:44:18 +00:00
2023-01-18 07:21:07 +00:00
Description
No description provided
4.1 MiB
Languages
Shell 85%
Roff 10%
Perl 3.4%
JavaScript 1.6%