Path to this page:
Subject: CVS commit: pkgsrc/www/firefox115
From: Ryo ONODERA
Date: 2023-11-23 13:47:01
Message id: 20231123124701.BBA60FA3F@cvs.NetBSD.org
Log Message:
firefox115: Update to 115.5.0
Changelog:
Fixed
Various security fixes and other quality improvements.
Security fixes:
Mozilla Foundation Security Advisory 2023-50
#CVE-2023-6204: Out-of-bound memory access in WebGL2 blitFramebuffer
#CVE-2023-6205: Use-after-free in MessagePort::Entangled
#CVE-2023-6206: Clickjacking permission prompts using the fullscreen transition
#CVE-2023-6207: Use-after-free in ReadableByteStreamQueueEntry::Buffer
#CVE-2023-6208: Using Selection API would copy contents into X11 primary
selection.
#CVE-2023-6209: Incorrect parsing of relative URLs starting with "///"
#CVE-2023-6212: Memory safety bugs fixed in Firefox 120, Firefox ESR 115.5, and
Thunderbird 115.5
Files: