Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 13 Sep 2023 19:32:02 +0000
From:      bugzilla-noreply@freebsd.org
To:        gecko@FreeBSD.org
Subject:   maintainer-feedback requested: [Bug 273766] www/firefox < 117.0 and mail/thunderbird < 102.15.0 have critical security vuln
Message-ID:  <bug-273766-21738-mnYK0ZDXO3@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-273766-21738@https.bugs.freebsd.org/bugzilla/>
References:  <bug-273766-21738@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
Bugzilla Automation <bugzilla@FreeBSD.org> has asked freebsd-gecko (Nobody)
<gecko@FreeBSD.org> for maintainer-feedback:
Bug 273766: www/firefox < 117.0 and mail/thunderbird < 102.15.0 have critic=
al
security vuln
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D273766



--- Description ---
This was reported today:
https://www.mozilla.org/en-US/security/advisories/mfsa2023-40/

"Opening a malicious WebP image could lead to a heap buffer overflow in the
content process. We are aware of this issue being exploited in other produc=
ts
in the wild."



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-273766-21738-mnYK0ZDXO3>