Package firefox: Information

  • Default inline alert: Version in the repository: 136.0.2-alt1

Source package: firefox
Version: 136.0-alt1
Latest version according to Repology
Build time:  Mar 11, 2025, 08:02 PM in the task #376916
Category: Networking/WWW
Report package bug
License: MPL-2.0
Summary: The Mozilla Firefox project is a redesign of Mozilla's browser
Description: 
Mozilla Firefox is an open-source web browser, designed
for standards compliance, performance and portability.

List of RPM packages built from this SRPM:
firefox (x86_64, i586, aarch64)
firefox-config-privacy (x86_64, i586, aarch64)
firefox-debuginfo (x86_64, i586, aarch64)

Maintainer: Ajrat Makhmutov



    1. /dev/shm
    2. /proc
    3. alternatives
    4. browser-plugins-npapi-devel
    5. cbindgen
    6. chrpath
    7. clang17.0
    8. clang17.0-devel
    9. glibc-kernheaders-generic
    10. gst-plugins1.0-devel
    11. gstreamer1.0-devel
    12. libnss-devel-static
    13. libshell
    14. libstdc++-devel
    15. python3(hamcrest)
    16. python3(setuptools)
    17. python3(sqlite3)
    18. libwireless-devel
    19. python3(pip)
    20. python3-base
    21. lld17.0-devel
    22. llvm17.0-devel
    23. rpm-build-firefox
    24. rpm-macros-alternatives
    25. mozilla-common-devel
    26. nasm
    27. node
    28. pkgconfig(alsa)
    29. pkgconfig(aom)
    30. pkgconfig(bzip2)
    31. pkgconfig(cairo)
    32. pkgconfig(dav1d)
    33. pkgconfig(dbus-1)
    34. pkgconfig(dbus-glib-1)
    35. pkgconfig(dri)
    36. pkgconfig(fontconfig)
    37. pkgconfig(freetype2)
    38. pkgconfig(gio-2.0)
    39. pkgconfig(graphite2)
    40. pkgconfig(gtk+-3.0)
    41. pkgconfig(harfbuzz)
    42. pkgconfig(hunspell)
    43. pkgconfig(icu-i18n)
    44. pkgconfig(libcurl)
    45. pkgconfig(libdrm)
    46. pkgconfig(libevent)
    47. pkgconfig(libffi)
    48. pkgconfig(libjpeg)
    49. pkgconfig(libnotify)
    50. pkgconfig(libproxy-1.0)
    51. pkgconfig(libpulse)
    52. pkgconfig(libstartup-notification-1.0)
    53. pkgconfig(nspr) >= 4.35
    54. pkgconfig(nss) >= 3.98
    55. pkgconfig(opus)
    56. pkgconfig(pixman-1)
    57. pkgconfig(vpx)
    58. pkgconfig(x11)
    59. pkgconfig(xcomposite)
    60. pkgconfig(xcursor)
    61. pkgconfig(xdamage)
    62. pkgconfig(xext)
    63. pkgconfig(xft)
    64. pkgconfig(xi)
    65. pkgconfig(xkbcommon)
    66. pkgconfig(xrandr)
    67. pkgconfig(xscrnsaver)
    68. pkgconfig(xt)
    69. pkgconfig(xtst)
    70. pkgconfig(zlib)
    71. rust >= 1.65.0
    72. rust-cargo >= 1.65.0
    73. python3(click)
    74. unzip
    75. python3(curses)
    76. xorg-cf-files
    77. yasm
    78. zip

Last changed


March 11, 2025 Ajrat Makhmutov 136.0-alt1
- New version (136.0).
- Security fixes:
  + CVE-2025-1930: AudioIPC StreamData could trigger a use-after-free in the Browser process
  + CVE-2025-1939: Tapjacking in Android Custom Tabs using transition animations
  + CVE-2025-1931: Use-after-free in WebTransportChild
  + CVE-2025-1932: Inconsistent comparator in XSLT sorting led to out-of-bounds access
  + CVE-2025-1933: JIT corruption of WASM i32 return values on 64-bit CPUs
  + CVE-2025-1940: Android Intent confirmation prompt tapjacking using Select options
  + CVE-2024-9956: Passkey phishing within Bluetooth range
  + CVE-2025-1934: Unexpected GC during RegExp bailout processing
  + CVE-2025-1941: Lock screen setting bypass in Firefox Focus for Android
  + CVE-2025-1942: Disclosure of uninitialized memory when .toUpperCase() causes string to get longer
  + CVE-2025-1935: Clickjacking the registerProtocolHandler info-bar
  + CVE-2025-1936: Adding %00 and a fake extension to a jar: URL changed the interpretation of the contents
  + CVE-2025-1937: Memory safety bugs fixed in Firefox 136, Thunderbird 136, Firefox ESR 115.21, Firefox ESR 128.8, and Thunderbird 128.8
  + CVE-2025-1938: Memory safety bugs fixed in Firefox 136, Thunderbird 136, Firefox ESR 128.8, and Thunderbird 128.8
  + CVE-2025-1943: Memory safety bugs fixed in Firefox 136 and Thunderbird 136
Feb. 19, 2025 Ajrat Makhmutov 135.0.1-alt1
- New version (135.0.1).
- Security fixes:
  + CVE-2025-1414: Memory safety bugs fixed in Firefox 135.0.1
Feb. 10, 2025 Ajrat Makhmutov 135.0-alt1
- New version (135.0).
- Security fixes:
  + CVE-2025-1009: Use-after-free in XSLT
  + CVE-2025-1010: Use-after-free in Custom Highlight
  + CVE-2025-1018: Fullscreen notification is not displayed when fullscreen is re-requested
  + CVE-2025-1011: A bug in WebAssembly code generation could result in a crash
  + CVE-2025-1012: Use-after-free during concurrent delazification
  + CVE-2025-1019: Fullscreen notification not properly displayed
  + CVE-2025-1013: Potential opening of private browsing tabs in normal browsing windows
  + CVE-2025-1014: Certificate length was not properly checked
  + CVE-2025-1016: Memory safety bugs fixed in Firefox 135, Thunderbird 135, Firefox ESR 115.20, Firefox ESR 128.7, Thunderbird 115.20, and Thunderbird 128.7
  + CVE-2025-1017: Memory safety bugs fixed in Firefox 135, Thunderbird 135, Firefox ESR 128.7, and Thunderbird 128.7
  + CVE-2025-1020: Memory safety bugs fixed in Firefox 135 and Thunderbird 135