mozjs102/firefox-102.14.0esr.source.tar.xz.asc
Dominique Leuenberger 1bea55c9a5 Accepting request 1103476 from GNOME:Next
- Update to version 102.14.0:
  + Various security fixes and other quality improvements.
  + CVE-2023-4045: Offscreen Canvas could have bypassed
    cross-origin restrictions.
  + CVE-2023-4046: Incorrect value used during WASM compilation.
  + CVE-2023-4047: Potential permissions request bypass via
    clickjacking.
  + CVE-2023-4048: Crash in DOMParser due to out-of-memory
    conditions.
  + CVE-2023-4049: Fix potential race conditions when releasing
    platform objects.
  + CVE-2023-4050: Stack buffer overflow in StorageManager.
  + CVE-2023-4054: Lack of warning when opening appref-ms files.
  + CVE-2023-4055: Cookie jar overflow caused unexpected cookie jar
    state.
  + CVE-2023-4056: Memory safety bugs fixed in Firefox 116, Firefox
    ESR 115.1, Firefox ESR 102.14, Thunderbird 115.1, and
    Thunderbird 102.14.
- Changes from version 102.13.0:
  + Various security fixes and other quality improvements.
  + CVE-2023-37201: Use-after-free in WebRTC certificate generation
  + CVE-2023-37202: Potential use-after-free from compartment
    mismatch in SpiderMonkey
  + CVE-2023-37207: Fullscreen notification obscured
  + CVE-2023-37208: Lack of warning when opening Diagcab files
  + CVE-2023-37211: Memory safety bugs fixed in Firefox 115,
    Firefox ESR 102.13, and Thunderbird 102.13

OBS-URL: https://build.opensuse.org/request/show/1103476
OBS-URL: https://build.opensuse.org/package/show/GNOME:Factory/mozjs102?expand=0&rev=27
2023-08-14 13:48:03 +00:00

17 lines
833 B
Plaintext

-----BEGIN PGP SIGNATURE-----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=yZYx
-----END PGP SIGNATURE-----