File _patchinfo of Package patchinfo.34597
<patchinfo incident="34597">
<issue tracker="bnc" id="1226316">VUL-0: MozillaFirefox / MozillaThunderbird: update to 128.0 and 115.13esr / 128.0esr</issue>
<issue tracker="bnc" id="1225278">Firefox's Search Provider doesn't work on GNOME (and possibly other DEs)</issue>
<issue tracker="cve" id="2024-5700"/>
<issue tracker="cve" id="2024-5691"/>
<issue tracker="cve" id="2024-5702"/>
<issue tracker="cve" id="2024-5690"/>
<issue tracker="cve" id="2024-5696"/>
<issue tracker="cve" id="2024-5688"/>
<issue tracker="cve" id="2024-5693"/>
<issue tracker="cve" id="2024-5692"/>
<issue tracker="cve" id="2024-6600"/>
<issue tracker="cve" id="2024-6601"/>
<issue tracker="cve" id="2024-6602"/>
<issue tracker="cve" id="2024-6603"/>
<issue tracker="cve" id="2024-6604"/>
<packager>MSirringhaus</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for MozillaFirefox</summary>
<description>This update for MozillaFirefox fixes the following issues:
Update to Firefox Extended Support Release 115.13.0 ESR (MFSA 2024-30, bsc#1226316):
- CVE-2024-6600: Memory corruption in WebGL API
- CVE-2024-6601: Race condition in permission assignment
- CVE-2024-6602: Memory corruption in NSS
- CVE-2024-6603: Memory corruption in thread creation
- CVE-2024-6604: Memory safety bugs fixed in Firefox 128, Firefox ESR 115.13, and Thunderbird 115.13
Other fixes:
- Fix GNOME search provider (bsc#1225278)
</description>
</patchinfo>