Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
a7d6e8bd by Salvatore Bonaccorso at 2026-07-28T06:28:59+02:00
Track fixed version for firefox issues via unstable

- - - - -
fb11fbbc by Salvatore Bonaccorso at 2026-07-28T06:29:20+02:00
Update status for CVE-2026-12318

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6908,7 +6908,7 @@ CVE-2026-16361 (Memory safety bugs present in Thunderbird 
ESR 140.12. Some of th
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16361
 CVE-2026-16360 (Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 
140.12 a ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16360
@@ -6916,33 +6916,33 @@ CVE-2026-16360 (Memory safety bugs present in Firefox 
ESR 115.37, Firefox ESR 14
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16360
 CVE-2026-16412 (Memory safety bugs present in Firefox ESR 140.12 and Firefox 
152. Some ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16412
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16412
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16412
 CVE-2026-16411 (Memory safety bugs present in Firefox 152. Some of these bugs 
showed e ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16411
 CVE-2026-16410 (JIT miscompilation in the JavaScript Engine: JIT component. 
This vulne ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16410
 CVE-2026-16409 (Invalid pointer in the Security: PSM component. This 
vulnerability was ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16409
 CVE-2026-16408 (Integer overflow in the Audio/Video: Playback component. This 
vulnerab ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16408
 CVE-2026-16407 (Mitigation bypass in the DOM: Service Workers component. This 
vulnerab ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16407
 CVE-2026-16406 (Mitigation bypass in the Networking component. This 
vulnerability was  ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16406
 CVE-2026-16405 (Information disclosure in the Networking: WebSockets 
component. This v ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16405
@@ -6952,57 +6952,57 @@ CVE-2026-16404 (Spoofing issue in Firefox for Android. 
This vulnerability was fi
        - firefox <not-affected> (Only affects Firefox on Android)
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16404
 CVE-2026-16403 (Spoofing issue in the Address Bar component. This 
vulnerability was fi ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16403
 CVE-2026-16402 (Integer overflow in the Graphics: ImageLib component. This 
vulnerabili ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16402
 CVE-2026-16401 (Privilege escalation in the Data Loss Prevention component. 
This vulne ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16401
 CVE-2026-16400 (Information disclosure in the DOM: Security component. This 
vulnerabil ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16400
 CVE-2026-16399 (Site isolation issue in the DOM: Navigation component. This 
vulnerabil ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16399
 CVE-2026-16398 (Site isolation issue in the Graphics component. This 
vulnerability was ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16398
 CVE-2026-16397 (Clickjacking issue in the WebExtensions component in Firefox 
for Andro ...)
        - firefox <not-affected> (Only affects Firefox on Android)
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16397
 CVE-2026-16396 (Privilege escalation in WebExtensions. This vulnerability was 
fixed in ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16396
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16396
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16396
 CVE-2026-16395 (Integer overflow in the Audio/Video component. This 
vulnerability was  ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16395
 CVE-2026-16394 (Mitigation bypass in the DOM: Security component. This 
vulnerability w ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16394
 CVE-2026-16359 (Incorrect boundary conditions in the Audio/Video: GMP 
component. This  ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16359
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16359
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16359
 CVE-2026-16393 (Incorrect boundary conditions in the Graphics: WebGPU 
component. This  ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16393
 CVE-2026-16392 (JIT miscompilation in the JavaScript Engine: JIT component. 
This vulne ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16392
 CVE-2026-16391 (Information disclosure in the Storage: IndexedDB component. 
This vulne ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16391
@@ -7010,62 +7010,62 @@ CVE-2026-16391 (Information disclosure in the Storage: 
IndexedDB component. This
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16391
 CVE-2026-16390 (Mitigation bypass in the Enterprise Policies component. This 
vulnerabi ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16390
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16390
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16390
 CVE-2026-16389 (Incorrect boundary conditions, integer overflow in the 
Libraries compo ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        - nss 2:3.126-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16389
        NOTE: https://hg-edge.mozilla.org/projects/nss/rev/9e854d9c6234
 CVE-2026-16388 (Sandbox escape in the DOM: Networking component. This 
vulnerability wa ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16388
 CVE-2026-16387 (Site isolation issue in the Networking component. This 
vulnerability w ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16387
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16387
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16387
 CVE-2026-16386 (Information disclosure due to uninitialized memory in the 
Graphics: We ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16386
 CVE-2026-16385 (Information disclosure due to uninitialized memory in the 
Graphics: We ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16385
 CVE-2026-16384 (Information disclosure due to uninitialized memory in the 
Graphics: We ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16384
 CVE-2026-16383 (Mitigation bypass in the DOM: Networking component. This 
vulnerability ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16383
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16383
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16383
 CVE-2026-16382 (Mitigation bypass in the DOM: Service Workers component. This 
vulnerab ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16382
 CVE-2026-16381 (Same-origin policy bypass in the Networking: DNS component. 
This vulne ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16381
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16381
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16381
 CVE-2026-16380 (Mitigation bypass in the Networking component. This 
vulnerability was  ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16380
 CVE-2026-16358 (Site isolation issue in the Graphics: WebRender component. 
This vulner ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16358
@@ -7073,29 +7073,29 @@ CVE-2026-16358 (Site isolation issue in the Graphics: 
WebRender component. This
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16358
 CVE-2026-16379 (Privilege escalation in the DOM: Content Processes component. 
This vul ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16379
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16379
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16379
 CVE-2026-16378 (Other issue in the DOM: Copy & Paste and Drag & Drop 
component. This v ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16378
 CVE-2026-16377 (Mitigation bypass in the PDF Viewer component. This 
vulnerability was  ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16377
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16377
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16377
 CVE-2026-16376 (Denial-of-service in the Graphics: WebGPU component. This 
vulnerabilit ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16376
 CVE-2026-16375 (Site isolation issue in the Networking: HTTP component. This 
vulnerabi ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16375
@@ -7103,7 +7103,7 @@ CVE-2026-16375 (Site isolation issue in the Networking: 
HTTP component. This vul
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16375
 CVE-2026-16374 (Information disclosure in the Framework component in DevTools. 
This vu ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16374
@@ -7113,22 +7113,22 @@ CVE-2026-16373 (Information disclosure in the Privacy 
component in Firefox for A
        - firefox <not-affected> (Only affects Firefox on Android)
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16373
 CVE-2026-16372 (Privilege escalation in the DOM: Content Processes component. 
This vul ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16372
 CVE-2026-16371 (Privilege escalation in the DOM: Navigation component. This 
vulnerabil ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16371
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16371
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16371
 CVE-2026-16370 (Mitigation bypass in the DOM: Networking component. This 
vulnerability ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16370
 CVE-2026-16357 (Incorrect boundary conditions in the Graphics component. This 
vulnerab ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16357
@@ -7136,7 +7136,7 @@ CVE-2026-16357 (Incorrect boundary conditions in the 
Graphics component. This vu
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16357
 CVE-2026-16356 (Sandbox escape due to use-after-free in the Disability Access 
APIs com ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16356
@@ -7144,7 +7144,7 @@ CVE-2026-16356 (Sandbox escape due to use-after-free in 
the Disability Access AP
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16356
 CVE-2026-16355 (JIT miscompilation in the JavaScript Engine: JIT component. 
This vulne ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16355
@@ -7152,7 +7152,7 @@ CVE-2026-16355 (JIT miscompilation in the JavaScript 
Engine: JIT component. This
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16355
 CVE-2026-16369 (Integer overflow in the JavaScript: WebAssembly component. 
This vulner ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16369
@@ -7160,18 +7160,18 @@ CVE-2026-16369 (Integer overflow in the JavaScript: 
WebAssembly component. This
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16369
 CVE-2026-16368 (Incorrect boundary conditions in the JavaScript: WebAssembly 
component ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16368
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16368
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16368
 CVE-2026-16367 (Sandbox escape due to invalid pointer in the Disability Access 
APIs co ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16367
 CVE-2026-16354 (Information disclosure in the Graphics: ImageLib component. 
This vulne ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16354
@@ -7179,24 +7179,24 @@ CVE-2026-16354 (Information disclosure in the Graphics: 
ImageLib component. This
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16354
 CVE-2026-16353 (Invalid pointer in the DOM: Bindings (WebIDL) component. This 
vulnerab ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16353
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16353
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16353
 CVE-2026-16366 (Privilege escalation in the DOM: Navigation component. This 
vulnerabil ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16366
 CVE-2026-16365 (Privilege escalation in the DOM: Workers component. This 
vulnerability ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16365
 CVE-2026-16364 (Incorrect boundary conditions in the Audio/Video: Playback 
component.  ...)
-       - firefox <unfixed>
+       - firefox 153.0-1
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16364
 CVE-2026-16363 (JIT miscompilation in the JavaScript: WebAssembly component. 
This vuln ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16363
@@ -7204,7 +7204,7 @@ CVE-2026-16363 (JIT miscompilation in the JavaScript: 
WebAssembly component. Thi
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16363
 CVE-2026-16352 (Sandbox escape due to use-after-free in the Disability Access 
APIs com ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16352
@@ -7212,7 +7212,7 @@ CVE-2026-16352 (Sandbox escape due to use-after-free in 
the Disability Access AP
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16352
 CVE-2026-16351 (Sandbox escape due to use-after-free in the DOM: Navigation 
component. ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16351
@@ -7220,7 +7220,7 @@ CVE-2026-16351 (Sandbox escape due to use-after-free in 
the DOM: Navigation comp
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16351
 CVE-2026-16362 (Use-after-free in the WebRTC: Audio/Video component. This 
vulnerabilit ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16362
@@ -7228,7 +7228,7 @@ CVE-2026-16362 (Use-after-free in the WebRTC: Audio/Video 
component. This vulner
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16362
 CVE-2026-16350 (Incorrect boundary conditions in the Audio/Video: cubeb 
component. Thi ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16350
@@ -7236,7 +7236,7 @@ CVE-2026-16350 (Incorrect boundary conditions in the 
Audio/Video: cubeb componen
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16350
 CVE-2026-16349 (Same-origin policy bypass in the DOM: Navigation component. 
This vulne ...)
        {DSA-6394-1 DLA-4695-1}
-       - firefox <unfixed>
+       - firefox 153.0-1
        - firefox-esr 140.13.0esr-1
        - thunderbird <unfixed>
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/#CVE-2026-16349
@@ -34836,7 +34836,7 @@ CVE-2026-12319 (Denial-of-service in the Audio/Video: 
Playback component. This v
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-57/#CVE-2026-12319
 CVE-2026-12318 (Incorrect boundary conditions in the Libraries component in 
NSS. This  ...)
        {DLA-4694-1}
-       - firefox <unfixed>
+       - firefox 152.0-1
        - nss 2:3.124-1
        [trixie] - nss 2:3.110-1+deb13u3
        NOTE: 
https://www.mozilla.org/en-US/security/advisories/mfsa2026-57/#CVE-2026-12318



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/70c882d39fb11be90bc6bf5957a09b1be610874f...fb11fbbc3039eecac4ee52526803c008c475ee1a

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/70c882d39fb11be90bc6bf5957a09b1be610874f...fb11fbbc3039eecac4ee52526803c008c475ee1a
You're receiving this email because of your account on salsa.debian.org. Manage 
all notifications: https://salsa.debian.org/-/profile/notifications | Help: 
https://salsa.debian.org/help


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to