Package firefox: Information

  • Default inline alert: A new version of the package has been build

    Task #: #316159
    Build time: Mar 6, 2023, 04:02 PM
    New version: 110.0.1-alt1
Binary package: firefox
Version: 107.0.1-alt2
Architecture: i586
Build time:  Dec 10, 2022, 11:29 PM in the task #311532
Source package: firefox
Category: Networking/WWW
Report package bug
License: MPL-2.0
Summary: The Mozilla Firefox project is a redesign of Mozilla's browser
Description: 
The Mozilla Firefox project is a redesign of Mozilla's browser component,
written using the XUL user interface language and designed to be
cross-platform.

Maintainer: Alexey Gladkov



Last changed


Dec. 10, 2022 Alexey Gladkov 107.0.1-alt2
- glxtest: Add patch to delay terminating the EGLDisplay.
Dec. 2, 2022 Alexey Gladkov 107.0.1-alt1
- New release (107.0.1).
Nov. 15, 2022 Alexey Gladkov 107.0-alt1
- New release (107.0).
- Security fixes:
  + CVE-2022-45403: Service Workers might have learned size of cross-origin media files
  + CVE-2022-45404: Fullscreen notification bypass
  + CVE-2022-45405: Use-after-free in InputStream implementation
  + CVE-2022-45406: Use-after-free of a JavaScript Realm
  + CVE-2022-45407: Loading fonts on workers was not thread-safe
  + CVE-2022-45408: Fullscreen notification bypass via windowName
  + CVE-2022-45409: Use-after-free in Garbage Collection
  + CVE-2022-45410: ServiceWorker-intercepted requests bypassed SameSite cookie policy
  + CVE-2022-45411: Cross-Site Tracing was possible via non-standard override headers
  + CVE-2022-45412: Symlinks may resolve to partially uninitialized buffers
  + CVE-2022-45413: SameSite=Strict cookies could have been sent cross-site via intent URLs
  + CVE-2022-40674: Use-after-free vulnerability in expat
  + CVE-2022-45415: Downloaded file may have been saved with malicious extension
  + CVE-2022-45416: Keystroke Side-Channel Leakage
  + CVE-2022-45417: Service Workers in Private Browsing Mode may have been written to disk
  + CVE-2022-45418: Custom mouse cursor could have been drawn over browser UiI
  + CVE-2022-45419: Deleting a security exception did not take effect immediately
  + CVE-2022-45420: Iframe contents could be rendered outside the iframe
  + CVE-2022-45421: Memory safety bugs fixed in Firefox 107 and Firefox ESR 102.5