-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5910-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff April 30, 2025 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : firefox-esr CVE ID : CVE-2025-4083 CVE-2025-4087 CVE-2025-4091 CVE-2025-4093 Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code or a bypass of sandbox restrictions. For the stable distribution (bookworm), these problems have been fixed in version 128.10.0esr-1~deb12u1. We recommend that you upgrade your firefox-esr packages. For the detailed security status of firefox-esr please refer to its security tracker page at: https://security-tracker.debian.org/tracker/firefox-esr Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmgSlOsACgkQEMKTtsN8 TjbW7hAAst8Uo+BCEy/7MSFgKnH9E0OHIBUsnR2bzLq0nY6xJcg9xkT+44TUt+Yl JYb07P6CPqbUwLBJjD6ZOM67DrkH8TXD6Y8yCfzb9GeN5aZFbomXdO1B/y+7OOJi MCRL+oyzyxejwhjpg9hfGYw7M2pzYEreihotJSqCnQ2/m1TlhC8/Y1JbgwAddzSn +xi/gU1gmwrl5LLw6KQZMMaL1BT3UwJ9e2fGJJpyyGXh+u8mVcNYYTC4cb/4rA6R s5IigQ6vnY01f81nuzXseuVxjdDjVwWmwLMl0LgZ0DovkhSk0mMxn7X7UipEv4DL Ow9bZXfRwNPkjNj47b9c7DX9KrM65lApsVIxigx7OEEbgaL85ePo8nfEQO9PAaKN mfeorzj89BC1kM/u3zFqEqfC2x3vPeBLXsLrEOdu482eok8Fek/KDigBPFCI+Dda 8TwZYoAAs8Zh2xtwVesUA039OWtUDnq8IohhrJqc+OoiHFHZ+F7o94z1NcXCyjCp sCvPZW37DJnI5UqcdNveyC76odUHDJt56yI1/KVjqtG6FLvBOqHwnrPHqd4uAxGU WwOjMJLdnzv1ZdOT4X74wLsxcJS01NlgwAWwKOfPOEz7PRHyhZhF5G+oennOZ9CD l3c/mcOiexTWAJ/qP5q2QXSFERAVOdQCGRyq7NWJrWOyZ577Nlc=CjTv -----END PGP SIGNATURE-----