Opened 12 months ago

Closed 12 months ago

Last modified 8 months ago

#22262 closed enhancement (fixed)

firefox-140.4.0esr

Reported by: zeckma Owned by: zeckma
Priority: high Milestone: 13.0
Component: BOOK Version: git
Severity: medium Keywords:
Cc:

Description

New ESR minor.

No release notes yet.

Change History (4)

comment:1 by zeckma, 12 months ago

Priority: normal → high

Fixes a number of security vulnerabilities.

Overall rating: High


  • CVE-2025-11708 (High): Use-after-free in MediaTrackGraphImpl::GetInstance()
  • CVE-2025-11709 (High): Out of bounds read/write in a privileged process triggered by WebGL textures
  • CVE-2025-11710 (High): Cross-process information leaked due to malicious IPC messages
  • CVE-2025-11711 (High): Some non-writable Object properties could be modified
  • CVE-2025-11712 (Moderate): An OBJECT tag type attribute overrode browser behavior on web resources without a content-type
  • CVE-2025-11713 (Moderate): Potential user-assisted code execution in “Copy as cURL” command
  • CVE-2025-11714 (High): Memory safety bugs fixed in Firefox ESR 115.29, Firefox ESR 140.4, Thunderbird ESR 140.4, Firefox 144 and Thunderbird 144
  • CVE-2025-11715 (High): Memory safety bugs fixed in Firefox ESR 140.4, Thunderbird ESR 140.4, Firefox 144 and Thunderbird 144

comment:2 by zeckma, 12 months ago

Fixed at eb093246906faf9f2994f2ccb52bd25a5eda4b40. Leaving open for SA filing.

comment:3 by zeckma, 12 months ago

Resolution: → fixed
Status: assigned → closed

SA-12.4-022 issued.

comment:4 by Bruce Dubbs, 8 months ago

Milestone: 12.5 → 13.0

Milestone renamed

Note: See TracTickets for help on using tickets.