Lucene search

K
altlinuxHttps://packages.altlinux.org/en/sisyphus/security/97D483E089BA19328A72703E10D225C2
HistoryJun 03, 2022 - 12:00 a.m.

Security fix for the ALT Linux 10 package firefox-esr version 91.10.0-alt1

2022-06-0300:00:00
https://packages.altlinux.org/en/sisyphus/security/
packages.altlinux.org
9

0.002 Low

EPSS

Percentile

52.6%

June 3, 2022 Pavel Vasenkov 91.10.0-alt1

- New ESR version.
- Security fixes:
  + CVE-2022-31736 Cross-Origin resource's length leaked
  + CVE-2022-31737 Heap buffer overflow in WebGL
  + CVE-2022-31738 Browser window spoof using fullscreen mode
  + CVE-2022-31739 Attacker-influenced path traversal when saving downloaded files
  + CVE-2022-31740 Register allocation problem in WASM on arm64
  + CVE-2022-31741 Uninitialized variable leads to invalid memory read
  + CVE-2022-31742 Querying a WebAuthn token with a large number of allowCredential entries may have leaked cross-origin information
  + CVE-2022-31747 Memory safety bugs fixed in Firefox 101 and Firefox ESR 91.10