Groups | Search | Server Info | Login | Register
Groups > linux.debian.announce.security > #4821
| Path | csiph.com!weretis.net!feeder8.news.weretis.net!fu-berlin.de!bofh.it!news.nic.it!robomod |
|---|---|
| From | Moritz Muehlenhoff <jmm@debian.org> |
| Newsgroups | linux.debian.announce.security |
| Subject | [SECURITY] [DSA 6254-1] firefox-esr security update |
| Date | Fri, 08 May 2026 20:20:01 +0200 |
| Message-ID | <MSxXP-3EZQ-5@gated-at.bofh.it> (permalink) |
| X-Original-To | debian-security-announce@lists.debian.org |
| X-Mailbox-Line | From debian-security-announce-request@lists.debian.org Fri May 8 18:18:14 2026 |
| Old-Return-Path | <jmm@seger.debian.org> |
| X-Amavis-Spam-Status | No, score=-112.191 tagged_above=-10000 required=5.3 tests=[BAYES_00=-2, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FVGT_m_MULTI_ODD=0.02, LDO_WHITELIST=-5, PGPSIGNATURE=-5, RCVD_IN_DNSWL_NONE=-0.0001, USER_IN_DKIM_WELCOMELIST=-0.01, USER_IN_DKIM_WHITELIST=-100] autolearn=ham autolearn_force=no |
| Old-Dkim-Signature | v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Content-Type:MIME-Version:Message-ID:Subject:To:From:Date :Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=VDO2bbBrd8GeemU3PFaW2nlTXnfUXgPrkc34NDw6jxw=; b=Oh phKfTuEOy75Aowilsh2f4REC2d1v2Ncs+fwd7jl2+kjc7WZH+ikdf/U7Wioo+/pYGnbnpoVkjgUl3 6sp+OcYxp+Axq4ewq/QIX2sWWFvZjRcSXD7KQNDGNEUpojnYWWYfv/U6XhYkyFVs8QfA4kZy7syoZ s12euVs3VoIDcbFe6aK3RyxMwAsrsO1UomjVade1YxvOY4Hq4Z/lxAdxMTRjI90HKW4rNU+/CBrdJ vAuQ4eVEqXBez3IPALFRd2yzHOMq42SzRF6jnrlAvjRVPTw9u8NO8EVtKp6xZWQCQ3EzqbMXEYavN o3seVaQxcw8gxTgVpKOyADWrhtlpe6mw==; |
| MIME-Version | 1.0 |
| Content-Type | text/plain; charset=us-ascii |
| Content-Disposition | inline |
| X-Debian | PGP check passed for security officers |
| Priority | urgent |
| Reply-To | debian-security-announce-request@lists.debian.org |
| X-Mailing-List | <debian-security-announce@lists.debian.org> archive/latest/5179 |
| List-ID | <debian-security-announce.lists.debian.org> |
| List-URL | <http://lists.debian.org/debian-security-announce/> |
| List-Archive | https://lists.debian.org/msgid-search/af4o0QjnCGMJaQ24@seger.debian.org |
| Approved | robomod@news.nic.it |
| Lines | 49 |
| Organization | linux.* mail to news gateway |
| Sender | robomod@news.nic.it |
| X-Original-Date | Fri, 8 May 2026 18:17:53 +0000 |
| X-Original-Message-ID | <af4o0QjnCGMJaQ24@seger.debian.org> |
| Xref | csiph.com linux.debian.announce.security:4821 |
Show key headers only | View raw
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-6254-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff May 08, 2026 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : firefox-esr CVE ID : CVE-2026-8090 CVE-2026-8092 CVE-2026-8094 Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code. For the oldstable distribution (bookworm), these problems have been fixed in version 140.10.2esr-1~deb12u1. For the stable distribution (trixie), these problems have been fixed in version 140.10.2esr-1~deb13u1. We recommend that you upgrade your firefox-esr packages. For the detailed security status of firefox-esr please refer to its security tracker page at: https://security-tracker.debian.org/tracker/firefox-esr Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmn+KKMACgkQEMKTtsN8 TjY6Hg//VUiTgHRG6MfKKzk10FFtDC4XtaUtclVL4Dw8fOUg/rSXqwuAiJgdG1R9 fsh0OHt9boy/MRzgDV3qzJpYe+VjdI8TS9qb0pl/GvWYodunna/5sgVPlMSRVaE6 00KgZ18HShZsmj2qACaFJ/B4eSx2yrf9Gs992DyXV3eYNCUnHHNTUBuANm5pLCGN 0ITRzV56grqtBIJ5WBwU54xioB2VPDOFjrScjDQPH/CuzAiMPA8vo2RdPTV89jnG t9qnOv/z4RYrCAHcQeSBmQmKo7E5zXpJ2KdOcJxORnhftn38Db1CMJ7L86gMUEiR t1CR3UI+k8Mcvse3/Q84Wt5dtAXgjwhgGrcWPATLLkKgGRNMolJFhEjgZ/FmNBBL CT7R2ADfEQCfFUuV/el5M9v81LKwdINP/NFQq0wOelMeivc9wb+8jCGrwqzmUqxL 9q9fNp7XsLWdMxErkUQDROPNvAbGnsLPJBhPLHCPhOUv9I3dH/UhWYvb+f5GPoxL d4vVpRzZzPGny4cYWiCP1Qh322yAG8UTXGPoCJQBbeJV7UPYzTJ3WbyfoUf5ePlM X6diI8YAFr0NiRyqMtXZjwd2Vve4YHBptuTSfchYCw7TC6Pf8seoQjXKesViPiEP 5cJOEDczLzSdwL64D0I7CPtGIsfN4yeKSGTgkdO3+X9ySieHLf0= =XRwj -----END PGP SIGNATURE-----
Back to linux.debian.announce.security | Previous | Next | Find similar
[SECURITY] [DSA 6254-1] firefox-esr security update Moritz Muehlenhoff <jmm@debian.org> - 2026-05-08 20:20 +0200
csiph-web