1
0
MozillaFirefox/firefox-97.0.source.tar.xz.asc
Wolfgang Rosenauer 4e431c39c0 - Mozilla Firefox 97.0
MFSA 2022-04 (bsc#1195682)
  * CVE-2022-22753 (bmo#1732435)
    Privilege Escalation to SYSTEM on Windows via Maintenance Service
  * CVE-2022-22754 (bmo#1750565)
    Extensions could have bypassed permission confirmation during update
  * CVE-2022-22755 (bmo#1309630)
    XSL could have allowed JavaScript execution after a tab was closed
  * CVE-2022-22756 (bmo#1317873)
    Drag and dropping an image could have resulted in the dropped
    object being an executable
  * CVE-2022-22757 (bmo#1720098)
    Remote Agent did not prevent local websites from connecting
  * CVE-2022-22758 (bmo#1728742)
    tel: links could have sent USSD codes to the dialer on
    Firefox for Android
  * CVE-2022-22759 (bmo#1739957)
    Sandboxed iframes could have executed script if the parent
    appended elements
  * CVE-2022-22760 (bmo#1740985, bmo#1748503)
    Cross-Origin responses could be distinguished between script
    and non-script content-types
  * CVE-2022-22761 (bmo#1745566)
    frame-ancestors Content Security Policy directive was not
    enforced for framed extension pages
  * CVE-2022-22762 (bmo#1743931)
    JavaScript Dialogs could have been displayed over other
    domains on Firefox for Android
  * CVE-2022-22764 (bmo#1742682, bmo#1744165, bmo#1746545,
    bmo#1748210, bmo#1748279)

OBS-URL: https://build.opensuse.org/package/show/mozilla:Factory/MozillaFirefox?expand=0&rev=958
2022-02-08 14:33:04 +00:00

17 lines
833 B
Plaintext

-----BEGIN PGP SIGNATURE-----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=/5GN
-----END PGP SIGNATURE-----