Zum Inhalt springen.
Sympa Menü

it-securitynotifies - [IT-SecNots] [SECURITY] [DSA 5889-1] firefox-esr security update

it-securitynotifies AT lists.piratenpartei.de

Betreff: Sicherheitsankündigungen

Listenarchiv

[IT-SecNots] [SECURITY] [DSA 5889-1] firefox-esr security update


Chronologisch Thread  
  • From: Moritz Muehlenhoff <jmm AT debian.org>
  • To: debian-security-announce AT lists.debian.org
  • Subject: [IT-SecNots] [SECURITY] [DSA 5889-1] firefox-esr security update
  • Date: Wed, 2 Apr 2025 18:19:23 +0000
  • Authentication-results: lists.piratenpartei.de; dkim=none; spf=none (lists.piratenpartei.de: domain of "bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org" has no SPF policy when checking 2001:41b8:202:deb:216:36ff:fe40:4002) smtp.mailfrom="bounce-debian-security-announce=it-securitynotifies=lists.piratenpartei.de AT lists.debian.org"; dmarc=none
  • List-archive: https://lists.debian.org/msgid-search/Z+1/q31iic6UMg3u AT seger.debian.org
  • List-id: <debian-security-announce.lists.debian.org>
  • List-url: <http://lists.debian.org/debian-security-announce/>
  • Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Content-Type:MIME-Version:Message-ID:Subject:To:From:Date :Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=51FNf40wqTF87z2U/0bG42Aan9Fp50+QD50K7GAbb0U=; b=RA hY67Biz5/M4v//YD3/1mfLudPSUO8qDJqewLeG0Lsokl4LkqfDNH4ztFXlF0NutHqE/PxsvOaMQw1 3/Oiy6WDgEXIzRtcSi1jLVMOgQlLYgL+EE1cAsRWOq7zyeK9iFh1NCYD+T1NXQX+2+alC5xYgpjqR 0wPGEXMx/1vomUIFS5KP+NWmHM/j2s67NyEZ4yHmG6OnDC8d3Pk4xXdL3C90a0+qttxDCA8yn4Swd ul72CpwKV/GxnAL3AqMxXjdryYi+dVjvGUtP8bbDYQKzKrjr2YCwrq9K2tk8W84sUG77Q2WrTrFWw a8fXGFUVFot38RFZVxt/NVhsyB5qDH/A==;
  • Old-return-path: <jmm AT seger.debian.org>
  • Priority: urgent
  • Resent-date: Wed, 2 Apr 2025 18:19:47 +0000 (UTC)
  • Resent-from: debian-security-announce AT lists.debian.org
  • Resent-message-id: <pP1F6OORvML.A.ELcG.D_X7nB@bendel>
  • Resent-sender: debian-security-announce-request AT lists.debian.org

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-5889-1 security AT debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
April 02, 2025 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : firefox-esr
CVE ID : CVE-2025-3028 CVE-2025-3029 CVE-2025-3030

Multiple security issues have been found in the Mozilla Firefox web
browser, which could potentially result in the execution of arbitrary
code or spoofing.

For the stable distribution (bookworm), these problems have been fixed in
version 128.9.0esr-1~deb12u1.

We recommend that you upgrade your firefox-esr packages.

For the detailed security status of firefox-esr please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/firefox-esr

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----
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=nO6Q
-----END PGP SIGNATURE-----



  • [IT-SecNots] [SECURITY] [DSA 5889-1] firefox-esr security update, Moritz Muehlenhoff, 02.04.2025

Archiv bereitgestellt durch MHonArc 2.6.19+.

Seitenanfang