Opened 19 months ago

Closed 18 months ago

Last modified 17 months ago

#21354 closed enhancement (fixed)

js-128.9.0 (spidermonkey) and firefox-128.9.0

Reported by: Bruce Dubbs Owned by: Douglas R. Reno
Priority: elevated Milestone: 12.4
Component: BOOK Version: git
Severity: medium Keywords:
Cc:

Description

New point version.

Change History (5)

comment:1 by Douglas R. Reno, 19 months ago

Milestone: 12.4 → 99-Waiting

This can wait until 128.9.0 as the issue it fixes is Windows specific.

comment:2 by Douglas R. Reno, 19 months ago

Milestone: 99-Waiting → 12.4
Priority: normal → elevated
Summary: js-128.8.0 (spidermonkey) and firefox-128.8.1 → js-128.9.0 (spidermonkey) and firefox-128.9.0

The latest Firefox ESR update is available, containing fixes for the following vulnerabilities:

  • CVE-2025-3028: Use-after-free triggered by XSLTProcessor (High)
  • CVE-2025-3029: URL Bar Spoofing via non-BMP Unicode characters (Moderate)
  • CVE-2025-3030: Memory safety bugs fixed in Firefox 137, Thunderbird 137, Firefox ESR 128.9, and Thunderbird 128.9 (High)

comment:3 by Douglas R. Reno, 19 months ago

Owner: changed from blfs-book to Douglas R. Reno
Status: new → assigned

comment:4 by Douglas R. Reno, 18 months ago

Resolution: → fixed
Status: assigned → closed

comment:5 by Douglas R. Reno, 17 months ago

SA-12.3-034 issued

Note: See TracTickets for help on using tickets.