[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 4510-1] firefox-esr security update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

- -------------------------------------------------------------------------
Debian LTS Advisory DLA-4510-1                debian-lts@lists.debian.org
https://www.debian.org/lts/security/               Emilio Pozuelo Monfort
March 26, 2026                                https://wiki.debian.org/LTS
- -------------------------------------------------------------------------

Package        : firefox-esr
Version        : 140.9.0esr-1~deb11u1
CVE ID         : CVE-2025-59375 CVE-2026-4684 CVE-2026-4685 CVE-2026-4686
                 CVE-2026-4687 CVE-2026-4688 CVE-2026-4689 CVE-2026-4690
                 CVE-2026-4691 CVE-2026-4692 CVE-2026-4693 CVE-2026-4694
                 CVE-2026-4695 CVE-2026-4696 CVE-2026-4697 CVE-2026-4698
                 CVE-2026-4699 CVE-2026-4700 CVE-2026-4701 CVE-2026-4702
                 CVE-2026-4704 CVE-2026-4705 CVE-2026-4706 CVE-2026-4707
                 CVE-2026-4708 CVE-2026-4709 CVE-2026-4710 CVE-2026-4713
                 CVE-2026-4714 CVE-2026-4715 CVE-2026-4716 CVE-2026-4717
                 CVE-2026-4718 CVE-2026-4719 CVE-2026-4720 CVE-2026-4721

Multiple security issues have been found in the Mozilla Firefox web
browser, which could potentially result in the execution of arbitrary
code, sandbox escape, information disclosure, denial of service or
privilege escalation.

For Debian 11 bullseye, these problems have been fixed in version
140.9.0esr-1~deb11u1.

We recommend that you upgrade your firefox-esr packages.

For the detailed security status of firefox-esr please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/firefox-esr

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
-----BEGIN PGP SIGNATURE-----
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=GHs5
-----END PGP SIGNATURE-----


Reply to: