Debian alert DLA-4510-1 (firefox-esr)
| From: | Emilio Pozuelo Monfort <pochu@debian.org> | |
| To: | <debian-lts-announce@lists.debian.org> | |
| Subject: | [SECURITY] [DLA 4510-1] firefox-esr security update | |
| Date: | Thu, 26 Mar 2026 23:11:19 +0100 | |
| Message-ID: | <20260326221119.761A65F00082@kamino> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4510-1 debian-lts@lists.debian.org https://www.debian.org/lts/security/ Emilio Pozuelo Monfort March 26, 2026 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : firefox-esr Version : 140.9.0esr-1~deb11u1 CVE ID : CVE-2025-59375 CVE-2026-4684 CVE-2026-4685 CVE-2026-4686 CVE-2026-4687 CVE-2026-4688 CVE-2026-4689 CVE-2026-4690 CVE-2026-4691 CVE-2026-4692 CVE-2026-4693 CVE-2026-4694 CVE-2026-4695 CVE-2026-4696 CVE-2026-4697 CVE-2026-4698 CVE-2026-4699 CVE-2026-4700 CVE-2026-4701 CVE-2026-4702 CVE-2026-4704 CVE-2026-4705 CVE-2026-4706 CVE-2026-4707 CVE-2026-4708 CVE-2026-4709 CVE-2026-4710 CVE-2026-4713 CVE-2026-4714 CVE-2026-4715 CVE-2026-4716 CVE-2026-4717 CVE-2026-4718 CVE-2026-4719 CVE-2026-4720 CVE-2026-4721 Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, sandbox escape, information disclosure, denial of service or privilege escalation. For Debian 11 bullseye, these problems have been fixed in version 140.9.0esr-1~deb11u1. We recommend that you upgrade your firefox-esr packages. For the detailed security status of firefox-esr please refer to its security tracker page at: https://security-tracker.debian.org/tracker/firefox-esr Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEcJymx+vmJZxd92Q+nUbEiOQ2gwIFAmnFrwMACgkQnUbEiOQ2 gwJWHQ/+IrcnTpwZLt0V85faGbARqkSr5kjV05HEliWYtooHL8P/V2n2MBwMsZ1x GdWcwcCW+8K05gU49lGMzll6jlaJQ0sannqdO0gbvjoRISvBExw6g9spYskFlKEQ LjVTwiNUo8ETYwWNbwiCNynpWgWXhhk8K9Cg0CmT+QLY15yRjgwFN7Z3KOlvZ9Ni J/MaI+WQg5HRrKy41SmnBRXa072jbZVc2Alqm7ddHut7jy8RseiUtcWXCX4TVHGp cnmFyTrw2hLdRNMUM0kYIcyQfnVz66AivywnrDbLvijkAL3OL2j8hRfZsa+fKw4f MB950AJTU9MMxb/zyWgjJTdhXLzC7+oNc2EZWb01icUT7oEv+p1hr+69XdzptVL8 jTqEDttXoMz5+Usys/JD0OZogab2eV2c0cRrJ2DacXb3a+KHcBvU4kaTY6oZhrke RcgjPLKyI5iEN+JSPTqkJ0S9/tpS1eKj9uiBnvARozMWUfU5vqyoD5CgqpJB1Mzw xAk5mYuosvXrPcGZMk4M85qR4RYG/c29QDZYztMvY8jcuhrV/ALr5/YW7idF3oza wIcd2FjRYU4JWco9xcOVt3A2IVJ5pCWLjQOwmKqnOGXWo6Srhy6+3TEHBkCXrBr0 SE0e95inRxn7XpkXwSQvwGjcLPTIL5IwPJYVKlyd8W/myY+YftQ= =GHs5 -----END PGP SIGNATURE-----
