it-securitynotifies AT lists.piratenpartei.de
Betreff: Sicherheitsankündigungen
Listenarchiv
- From: Moritz Muehlenhoff <jmm AT debian.org>
- To: debian-security-announce AT lists.debian.org
- Subject: [IT-SecNots] [SECURITY] [DSA 5450-1] firefox-esr security update
- Date: Fri, 7 Jul 2023 17:43:57 +0000
- Authentication-results: mail.piratenpartei.de; dkim=none; spf=none (mail.piratenpartei.de: domain of "bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org" has no SPF policy when checking 2001:41b8:202:deb:216:36ff:fe40:4002) smtp.mailfrom="bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org"; dmarc=none
- List-archive: https://lists.debian.org/msgid-search/ZKhO3VWyvjHuLORa AT seger.debian.org
- List-id: <debian-security-announce.lists.debian.org>
- List-url: <http://lists.debian.org/debian-security-announce/>
- Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Content-Type:MIME-Version:Message-ID:Subject:To:From:Date :Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=EHx66psQPH7O0Rvddh9QG5lBmXX1g6t55GzJVqAyQUk=; b=Ec MyJBdpLTjP0A6XXchfqoby+qs78JOnn68Em7F1+DMN2cx26t6Ynq7+k7yuaL0qNspe1RIrkccKvra VR9Yo8PziIh+1mEE2Ff7ztt34rQvz9kodEisqa8pGisVwsmktzHZTzOMMVg/H14swHqtxqNv2W9Bi ip1X0YEiGgPDtBGXKc9RTrN/vh5/eAYzl/nDf1tHfNdngKL2+QcvUUyj22zk9VGCGQiVqa23p2Y3E 7xaDH3CKA6uzxukTS0YJB/+wzRsVn3PZQmtW0UaHftHOMLldjqSnCF14NN5meAmSZnSke1mLx3jLp ycIGLDwtwj77Y/A6X8qxC4wg1maXzHFA==;
- Old-return-path: <jmm AT seger.debian.org>
- Priority: urgent
- Resent-date: Fri, 7 Jul 2023 17:44:22 +0000 (UTC)
- Resent-from: debian-security-announce AT lists.debian.org
- Resent-message-id: <YDBU4t5cmz.A.RkE.17EqkB@bendel>
- Resent-sender: debian-security-announce-request AT lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-5450-1 security AT debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
July 07, 2023 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : firefox-esr
CVE ID : CVE-2023-37201 CVE-2023-37202 CVE-2023-37207 CVE-2023-37208
CVE-2023-37211
Multiple security issues have been found in the Mozilla Firefox web
browser, which could potentially result in the execution of arbitrary
code or spoofing.
For the oldstable distribution (bullseye), these problems have been fixed
in version 102.13.0esr-1~deb11u1.
For the stable distribution (bookworm), these problems have been fixed in
version 102.13.0esr-1~deb12u1.
We recommend that you upgrade your firefox-esr packages.
For the detailed security status of firefox-esr please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/firefox-esr
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----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=A7kU
-----END PGP SIGNATURE-----
- [IT-SecNots] [SECURITY] [DSA 5450-1] firefox-esr security update, Moritz Muehlenhoff, 07.07.2023
Archiv bereitgestellt durch MHonArc 2.6.24.