Пакет firefox-esr-config-privacy: Информация

  • Default inline alert: Версия в репозитории: 115.10.0-alt1

Бинарный пакет: firefox-esr-config-privacy
Версия: 91.5.1-alt1
Архитектура: x86_64
Собран:  27 января 2022 г. 17:09 в задании #294209
Исходный пакет: firefox-esr
Сообщить об ошибке в пакете
Домашняя страница: http://www.mozilla.org/projects/firefox/

Лицензия: MPL-2.0
О пакете: Firefox configuration with the paranoid privacy settings
Описание: 
Settings disable:
* obsolete ssl protocols;
* safebrowsing, trackingprotection and other requests to third-party services;
* telemetry;
* webrtc;
* the social features;
* dns and network predictors/prefetch;
* and some more...

Most likely you don't need to use this package.

Сопровождающий: Andrey Cherepanov


Последнее изменение


27 января 2022 г. Pavel Vasenkov 91.5.1-alt1
- New ESR version.
11 января 2022 г. Andrey Cherepanov 91.5.0-alt1
- New ESR version.
- Security fixes:
  + CVE-2022-22746 Calling into reportValidity could have lead to fullscreen window spoof
  + CVE-2022-22743 Browser window spoof using fullscreen mode
  + CVE-2022-22742 Out-of-bounds memory access when inserting text in edit mode
  + CVE-2022-22741 Browser window spoof using fullscreen mode
  + CVE-2022-22740 Use-after-free of ChannelEventQueue::mOwner
  + CVE-2022-22738 Heap-buffer-overflow in blendGaussianBlur
  + CVE-2022-22737 Race condition when playing audio files
  + CVE-2021-4140 Iframe sandbox bypass with XSLT
  + CVE-2022-22748 Spoofed origin on external protocol launch dialog
  + CVE-2022-22745 Leaking cross-origin URLs through securitypolicyviolation event
  + CVE-2022-22744 The 'Copy as curl' feature in DevTools did not fully escape website-controlled data, potentially leading to command injection
  + CVE-2022-22747 Crash when handling empty pkcs7 sequence
  + CVE-2022-22739 Missing throttling on external protocol launch dialog
  + CVE-2022-22751 Memory safety bugs fixed in Firefox 96 and Firefox ESR 91.5
17 декабря 2021 г. Andrey Cherepanov 91.4.1-alt1
- New ESR version.