head 1.25; access; symbols pkgsrc-2026Q3:1.25.0.2 pkgsrc-2026Q3-base:1.25 pkgsrc-2026Q2:1.19.0.2 pkgsrc-2026Q2-base:1.19 pkgsrc-2026Q1:1.12.0.2 pkgsrc-2026Q1-base:1.12 pkgsrc-2025Q4:1.4.0.2 pkgsrc-2025Q4-base:1.4; locks; strict; comment @# @; 1.25 date 2026.09.15.13.16.58; author gutteridge; state Exp; branches; next 1.24; commitid SwAoD2iUPVLmGIVG; 1.24 date 2026.09.02.19.04.57; author wiz; state Exp; branches; next 1.23; commitid vXszxoxOqka005UG; 1.23 date 2026.09.01.16.02.34; author gutteridge; state Exp; branches; next 1.22; commitid NbuE2E0lPDsC2WTG; 1.22 date 2026.08.19.02.36.12; author gutteridge; state Exp; branches; next 1.21; commitid Ps3QhIKiwfx50cSG; 1.21 date 2026.07.21.16.30.32; author gutteridge; state Exp; branches; next 1.20; commitid ZxntcfgzCDzgyxOG; 1.20 date 2026.07.13.04.36.34; author wiz; state Exp; branches; next 1.19; commitid KzpMRouvb2DLQrNG; 1.19 date 2026.06.16.16.16.43; author gutteridge; state Exp; branches 1.19.2.1; next 1.18; commitid isTpUgWSiKChB2KG; 1.18 date 2026.06.11.07.17.47; author wiz; state Exp; branches; next 1.17; commitid bVZL3OdakDMSLlJG; 1.17 date 2026.05.21.15.34.05; author gutteridge; state Exp; branches; next 1.16; commitid 7T50CRi41dfkcHGG; 1.16 date 2026.05.07.20.25.32; author gutteridge; state Exp; branches; next 1.15; commitid iWQ3iojshMyrgVEG; 1.15 date 2026.04.30.18.51.22; author gutteridge; state Exp; branches; next 1.14; commitid yKrZQOCM2JcYX0EG; 1.14 date 2026.04.21.13.40.08; author gutteridge; state Exp; branches; next 1.13; commitid D87keWPDmUVexPCG; 1.13 date 2026.04.09.18.37.06; author gutteridge; state Exp; branches; next 1.12; commitid 3tYWuzeMsO94zjBG; 1.12 date 2026.03.24.13.11.35; author gutteridge; state Exp; branches 1.12.2.1; next 1.11; commitid OQxDJoo44o6ghezG; 1.11 date 2026.02.24.14.07.55; author gutteridge; state Exp; branches; next 1.10; commitid e6LxN1xHBOyguDvG; 1.10 date 2026.02.17.00.26.49; author gutteridge; state Exp; branches; next 1.9; commitid r8ldzyvFdlHkaFuG; 1.9 date 2026.01.27.08.40.49; author wiz; state Exp; branches; next 1.8; commitid f4MYtJVcsY7dz0sG; 1.8 date 2026.01.13.17.20.06; author gutteridge; state Exp; branches; next 1.7; commitid hqngZbAqcqMiTfqG; 1.7 date 2026.01.07.08.49.18; author wiz; state Exp; branches; next 1.6; commitid 1wQ3ICD8eebefrpG; 1.6 date 2026.01.06.23.27.50; author gutteridge; state Exp; branches; next 1.5; commitid j97VjMVViBWP9opG; 1.5 date 2025.12.22.06.08.17; author adam; state Exp; branches; next 1.4; commitid YVGobEfcMaDpTmnG; 1.4 date 2025.12.11.11.05.21; author leot; state Exp; branches 1.4.2.1; next 1.3; commitid Jl8MdNyMAsEOSYlG; 1.3 date 2025.11.12.19.48.10; author leot; state Exp; branches; next 1.2; commitid c5kiPkEu7aPWHiiG; 1.2 date 2025.10.23.20.39.46; author wiz; state Exp; branches; next 1.1; commitid 1V2hBZn9ypXaCJfG; 1.1 date 2025.10.19.11.56.55; author leot; state Exp; branches; next ; commitid O4nVQ7B6izcESafG; 1.19.2.1 date 2026.07.22.15.14.11; author maya; state Exp; branches; next 1.19.2.2; commitid vRSFMuMrtjgh6FOG; 1.19.2.2 date 2026.08.24.19.38.48; author maya; state Exp; branches; next ; commitid 2C4kdQsgJFgivVSG; 1.12.2.1 date 2026.04.10.19.09.35; author bsiegert; state Exp; branches; next 1.12.2.2; commitid FTTeGhuFkwkjIrBG; 1.12.2.2 date 2026.04.22.14.32.19; author maya; state Exp; branches; next 1.12.2.3; commitid iDHLLUhOplH6NXCG; 1.12.2.3 date 2026.04.26.19.35.21; author bsiegert; state Exp; branches; next 1.12.2.4; commitid M5E5QUqdg03glvDG; 1.12.2.4 date 2026.05.02.19.26.59; author bsiegert; state Exp; branches; next 1.12.2.5; commitid idHf729mVYiq6hEG; 1.12.2.5 date 2026.05.08.11.16.50; author maya; state Exp; branches; next 1.12.2.6; commitid HGEyfAIx2h2kc0FG; 1.12.2.6 date 2026.05.24.09.00.09; author bsiegert; state Exp; branches; next ; commitid EtMrmv36WTnxV2HG; 1.4.2.1 date 2026.01.14.18.58.46; author maya; state Exp; branches; next 1.4.2.2; commitid xVspYetx9XpZpoqG; 1.4.2.2 date 2026.02.28.20.14.29; author bsiegert; state Exp; branches; next ; commitid nTJO074MkAchobwG; desc @@ 1.25 log @firefox140: update to 140.16 Mozilla Foundation Security Advisory 2026-92 Security Vulnerabilities fixed in Firefox ESR 140.16 Announced September 15, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.16 Note: We have changed how we publish advisories. We no longer roll all internally identified memory safety vulnerabilities into a single CVE and are now issuing an advisory for every individual bug. #CVE-2026-92005: Use-after-free in the Audio/Video: Web Codecs component Reporter devdharan9424@@gmail.com Impact high References Bug 2056051 #CVE-2026-92006: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Mozilla Impact high References Bug 2057121 #CVE-2026-92007: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Mozilla Impact high References Bug 2058064 #CVE-2026-92008: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Mozilla Impact high References Bug 2058065 #CVE-2026-92009: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Mozilla Impact high References Bug 2058066 #CVE-2026-92010: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Mozilla Impact high References Bug 2058067 #CVE-2026-92011: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Mozilla Impact high References Bug 2058068 #CVE-2026-92012: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Mozilla Impact high References Bug 2058069 #CVE-2026-92013: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Mozilla Impact high References Bug 2058078 #CVE-2026-92014: Privilege escalation due to incorrect boundary conditions in the Graphics component Reporter Jacolon Walker Impact high References Bug 2060000 #CVE-2026-92015: Privilege escalation in the WebExtensions component Reporter Quy Pham Impact high References Bug 2060235 #CVE-2026-92016: Use-after-free in the Disability Access APIs component Reporter Mozilla Impact high References Bug 2061327 #CVE-2026-92017: Privilege escalation in the DOM: Service Workers component Reporter Mozilla Impact high References Bug 2061777 #CVE-2026-92018: Sandbox escape in the DOM: Core & HTML component Reporter Quy Pham Impact high References Bug 2064287 #CVE-2026-92019: Mitigation bypass in the Remote Settings Client component Reporter Shu Takahashi Impact high References Bug 2065636 #CVE-2026-92020: Privilege escalation due to incorrect boundary conditions in the Graphics: WebRender component Reporter Rintaro Kawasugi Impact high References Bug 2066329 #CVE-2026-92021: Use-after-free in the JavaScript Engine: JIT component Reporter Tomer Fichman Impact high References Bug 2067208 #CVE-2026-92022: Use-after-free in the DOM: HTML Parser component Reporter Seohyeon Maeng Impact high References Bug 2068059 #CVE-2026-92023: Use-after-free in the XML component Reporter Mozilla Impact high References Bug 2068342 #CVE-2026-92024: Use-after-free in the SVG component Reporter Mozilla Impact high References Bug 2068354 #CVE-2026-92025: Use-after-free in the DOM: Navigation component Reporter Mozilla Impact high References Bug 2068361 #CVE-2026-92026: Use-after-free in the Networking component Reporter Mozilla Impact high References Bug 2068378 #CVE-2026-92027: Use-after-free in the DOM: Streams component Reporter Mozilla Impact high References Bug 2068433 #CVE-2026-92028: Use-after-free in the DOM: Core & HTML component Reporter Mozilla Impact high References Bug 2068440 #CVE-2026-92029: Use-after-free in the SVG component Reporter Mozilla Impact high References Bug 2068445 #CVE-2026-92030: Mitigation bypass in the DOM: Copy & Paste and Drag & Drop component Reporter anas cherni Impact moderate References Bug 2058417 #CVE-2026-92031: Information disclosure in the Graphics: ImageLib component Reporter Qi Qin Impact moderate References Bug 2067971 #CVE-2026-92032: Sandbox escape due to invalid pointer in the Graphics component Reporter Mozilla Impact moderate References Bug 2068437 @ text @# $NetBSD: Makefile,v 1.24 2026/09/02 19:04:57 wiz Exp $ FIREFOX_VER= ${MOZ_BRANCH}${MOZ_BRANCH_MINOR} MOZ_BRANCH= 140.16 MOZ_BRANCH_MINOR= .0esr DISTNAME= firefox-${FIREFOX_VER}.source PKGNAME= ${DISTNAME:S/.source//:S/b/beta/:S/esr//:S/firefox-/firefox140-/} CATEGORIES= www MASTER_SITES+= ${MASTER_SITE_MOZILLA:=firefox/releases/${FIREFOX_VER}/source/} MASTER_SITES+= ${MASTER_SITE_MOZILLA_ALL:=firefox/releases/${FIREFOX_VER}/source/} EXTRACT_SUFX= .tar.xz NODEJSKIT= nodejs-output-140.0.4.tgz DISTFILES= ${DEFAULT_DISTFILES} ${NODEJSKIT} SITES.${NODEJSKIT}= ${MASTER_SITE_LOCAL} MAINTAINER= ryoon@@NetBSD.org HOMEPAGE= https://www.mozilla.org/en-US/firefox/ COMMENT= Web browser with support for extensions (version ${FIREFOX_VER:tu:C/\\.[[:digit:]\.]*//}) LICENSE= mpl-1.1 # -------- BEFORE UPDATING THIS PACKAGE PLEASE READ & UNDERSTAND: ------- # # This package works around a (stupid) build time dependency on nodejs # (which is not available for all architectures and unnecessary for the # real build). To do this, it places some additional burden on the # maintainer. # # While working on the package, please make sure you have # # FIREFOX_MAINTAINER=yes # # set in your build environment. # When the package is ready for commit (but before commit), do: # # make maintainer-files # # This will do another round (depending on state of your work dir at this # moment) of one or two builds and generate a cache of all output that # nodejs generates during a build. # # When this is done, just commit the results (they will be in the files/ # directory). # # ----------------------------------------------------------------------- WRKSRC= ${WRKDIR}/firefox-${PKGVERSION_NOREV} MOZILLA_DIR= # empty # Note: In --enable-chrome-format=flat case, # when updating remember to conditionalise about-background.png in PLIST CONFIGURE_ARGS+= --enable-application=browser #CFLAGS+= -I${PREFIX}/include/nspr # for lang/gcc6 CFLAGS+= -D_GLIBCXX_INCLUDE_NEXT_C_HEADERS CFLAGS.SunOS+= -D_POSIX_PTHREAD_SEMANTICS # Do not use uselocale() in third_party/pipewire. CFLAGS.NetBSD+= -D__LOCALE_C_ONLY LDFLAGS+= ${COMPILER_RPATH_FLAG}${PREFIX}/lib/${PKGBASE} LDFLAGS+= ${COMPILER_RPATH_FLAG}${PREFIX}/lib LDFLAGS.DragonFly+= -lplc4 -lnspr4 LDFLAGS.FreeBSD+= -lplc4 -lnspr4 LDFLAGS.Linux+= -lnspr4 LDFLAGS.SunOS+= -lm # Should revisit to complete mprotect support. NOT_PAX_MPROTECT_SAFE+= lib/${PKGBASE}/${MOZILLA} NOT_PAX_MPROTECT_SAFE+= lib/${PKGBASE}/${MOZILLA}-bin # Avoid ld "invalid section index" errors. BUILDLINK_TRANSFORM.SunOS+= rm:-fdata-sections BUILDLINK_TRANSFORM.SunOS+= rm:-ffunction-sections BUILDLINK_TRANSFORM.SunOS+= rm:-pie BUILDLINK_TRANSFORM.SunOS+= rm:-Wl,-rpath-link,${WRKDIR}/build/dist/bin BUILDLINK_TRANSFORM.SunOS+= rm:-Wl,-rpath-link,${PREFIX}/lib # Workaround for https://bugs.llvm.org/show_bug.cgi?id=46366 BUILDLINK_TRANSFORM.NetBSD+= rm:-fexperimental-new-pass-manager SUBST_CLASSES+= dfly_malloc_h SUBST_STAGE.dfly_malloc_h= pre-configure SUBST_MESSAGE.dfly_malloc_h= Dont include malloc.h on dragonflybsd SUBST_SED.dfly_malloc_h= -e 's,HAVE_MALLOC_H,HAVE_MALLOC_H \&\& !defined(__DragonFly__),g' SUBST_FILES.dfly_malloc_h+= media/ffvpx/libavutil/mem.c SUBST_CLASSES+= paths SUBST_STAGE.paths= pre-configure SUBST_FILES.paths= ../firefox.sh SUBST_VARS.paths= PREFIX MOZILLA .include "mozilla-common.mk" .include "options.mk" CHECK_INTERPRETER_SKIP+= lib/firefox-sdk/sdk/bin/header.py CHECK_INTERPRETER_SKIP+= lib/firefox-sdk/sdk/bin/typelib.py CHECK_INTERPRETER_SKIP+= lib/firefox-sdk/sdk/bin/xpidl.py CHECK_INTERPRETER_SKIP+= lib/firefox-sdk/sdk/bin/xpt.py CHECK_WRKREF_SKIP+= lib/${MOZILLA}/omni.ja MOZILLA= ${PKGBASE} .if !empty(PKG_OPTIONS:Mofficial-mozilla-branding) MOZILLA_NAME= Firefox MOZILLA_BRANDING= official .else MOZILLA_NAME= Browser MOZILLA_BRANDING= unofficial .endif pre-configure: # As of 106.0, .in template files are not patched. # cd ${WRKSRC} && autoconf # cd ${WRKSRC}/js/src && autoconf cd ${WRKSRC} && mkdir ${OBJDIR} cd ${WRKSRC}/${OBJDIR} && touch old-configure.vars # Do not fetch Rust Cargo file via network during build .if !defined(FIREFOX_MAINTAINER) mv ${WRKDIR}/dist ${WRKSRC}/${OBJDIR} .endif .if defined(FIREFOX_MAINTAINER) # Create files needed only by the firefox maintainer when updating # the package # XXX - manually removing the .*_done files is wrong! .PHONY: build-list build-list: cd ${WRKSRC}/${OBJDIR}/dist/bin/browser/chrome && \ find . -type f | sort > ${OUT:Q} NODE_LIST= "${WRKDIR}/node.list" NO_NODE_LIST= "${WRKDIR}/no-node.list" NODE_FILES= "${WRKDIR}/node.flist" .PHONY: maintainer-files maintainer-files: rm -f ${FILESDIR}/node-wrapper.sh V=$$( node -v ) && \ printf '#! /bin/sh\n\nVERS=%s\n\nif [ "$$1" = "-v" ] || [ "$$1" = "--version" ]; then\n\tprintf "$${VERS}\\n"\nfi\n\nexit 0\n' $$V \ > ${FILESDIR}/node-wrapper.sh && \ chmod 0755 ${FILESDIR}/node-wrapper.sh rm -f ${WRKDIR}/.build_done ${WRKDIR}/.configure_done ${MAKE} MAINTAINER_INTERNAL=yes build ${MAKE} MAINTAINER_INTERNAL=yes OUT="${NO_NODE_LIST}" build-list ${MAKE} OUT="${NODE_LIST}" build-list ${DIFF} -u "${NO_NODE_LIST}" "${NODE_LIST}" | \ ${AWK} \ '/^\+\.\//{ printf("dist/bin/browser/chrome/%s\n", gensub(/^\+\.\//, "", "")) }' \ > "${NODE_FILES}" cd ${WRKSRC}/${OBJDIR} && tar -c -T "${NODE_FILES}" -z \ -f ${FILESDIR}/nodejs-output-${PKGVERSION_NOREV}.tgz .endif pre-patch: for f in $$(find ${WRKSRC}/third_party/libwebrtc -name moz.build -type f) ; \ do \ ${AWK} -f ${FILESDIR}/replace-moz.build.awk $$f > $$f.new; mv $$f.new $$f ; \ done for f in $$(find ${WRKSRC}/third_party/abseil-cpp -name moz.build -type f) ; \ do \ ${AWK} -f ${FILESDIR}/replace-moz.build.awk $$f > $$f.new; mv $$f.new $$f ; \ done post-build: ${SED} -e 's|@@MOZILLA@@|${MOZILLA}|g' \ -e 's|@@MOZILLA_NAME@@|${MOZILLA_NAME}|g' \ -e 's|@@FIREFOX_ICON@@|${MOZILLA}|g' \ < ${FILESDIR}/desktop.in \ > ${WRKDIR}/desktop INSTALLATION_DIRS+= share/applications post-extract: ${CP} ${FILESDIR}/firefox.sh ${WRKDIR}/firefox.sh post-install: .if ${OPSYS} == "NetBSD" && ${X11_TYPE} == "native" ${INSTALL_SCRIPT} ${WRKDIR}/firefox.sh ${DESTDIR}${PREFIX}/bin/${MOZILLA} .else ${ECHO} '#! /bin/sh' > ${DESTDIR}${PREFIX}/bin/${MOZILLA} ${ECHO} '${PREFIX}/lib/${MOZILLA}/${MOZILLA} "$$@@"' >> \ ${DESTDIR}${PREFIX}/bin/${MOZILLA} ${CHMOD} 755 ${DESTDIR}${PREFIX}/bin/${MOZILLA} .endif ${INSTALL_DATA} ${WRKDIR}/desktop \ ${DESTDIR}${PREFIX}/share/applications/${MOZILLA}.desktop .for i in 16 22 24 32 48 64 128 256 ${INSTALL_DATA_DIR} ${DESTDIR}${PREFIX}/share/icons/hicolor/${i}x${i}/apps ${INSTALL_DATA} ${WRKSRC}/browser/branding/${MOZILLA_BRANDING}/default${i}.png \ ${DESTDIR}${PREFIX}/share/icons/hicolor/${i}x${i}/apps/${MOZILLA}.png .endfor .include "../../graphics/hicolor-icon-theme/buildlink3.mk" .include "../../sysutils/desktop-file-utils/desktopdb.mk" .include "../../mk/bsd.pkg.mk" @ 1.24 log @*: recursive bump for pcre2 10.48 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.23 2026/09/01 16:02:34 gutteridge Exp $ d4 1 a4 1 MOZ_BRANCH= 140.15 a8 1 PKGREVISION= 1 @ 1.23 log @firefox140: update to 140.15 Mozilla Foundation Security Advisory 2026-84 Security Vulnerabilities fixed in Firefox ESR 140.15 Announced September 1, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.15 #CVE-2026-75874: Sandbox escape in the Remote Settings Client component Reporter crixer Impact high References Bug 2039972 #CVE-2026-16365: Privilege escalation in the DOM: Workers component Reporter Khanh Nguyen Impact high References Bug 2049149 #CVE-2026-84119: Sandbox escape due to use-after-free in the DOM: Navigation component Reporter Yaqoub Aldurayhim Impact high References Bug 2057817 #CVE-2026-84120: Use-after-free in the Audio/Video component Reporter Ukyo Akai Impact high References Bug 2058911 #CVE-2026-84121: Sandbox escape due to use-after-free in the DOM: Security component Reporter Yaqoub Aldurayhim Impact high References Bug 2059018 #CVE-2026-84122: Use-after-free in the Audio/Video component Reporter Hyeonjun Ahn Impact high References Bug 2059965 #CVE-2026-84124: Use-after-free in the DOM: Core & HTML component Reporter Hyeonjun Ahn Impact high References Bug 2061110 #CVE-2026-16371: Privilege escalation in the DOM: Navigation component Reporter Steven Julian Impact moderate References Bug 2008369 #CVE-2026-84131: Privilege escalation due to invalid pointer in the Graphics component Reporter navapon Impact moderate References Bug 2060008 #CVE-2026-84143: Internally found bugs fixed in Firefox 155, Firefox ESR 153.2 and Firefox ESR 140.15 Reporter Jan de Mooij, Tom Ritter and the Mozilla Fuzzing Team Impact high Description Internally found bugs present in Firefox 154, Firefox ESR 153.1 and Firefox ESR 140.14. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. References High Severity internally found bugs fixed in Firefox 155, Firefox ESR 153.2 and Firefox ESR 140.15 Moderate Severity internally found bugs fixed in Firefox 155, Firefox ESR 153.2 and Firefox ESR 140.15 Low Severity internally found bugs fixed in Firefox 155, Firefox ESR 153.2 and Firefox ESR 140.15 #CVE-2026-84145: Internally found bugs fixed in Firefox 155, Firefox ESR 153.2, Firefox ESR 140.15 and Firefox ESR 115.40 Reporter Leo Tenenbaum, Tom Ritter and the Mozilla Fuzzing Team Impact high Description Internally found bugs present in Firefox 154, Firefox ESR 153.1, Firefox ESR 140.14 and Firefox ESR 115.39. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. References High Severity internally found bugs fixed in Firefox 155, Firefox ESR 153.2, Firefox ESR 140.15 and Firefox ESR 115.40 Moderate Severity internally found bugs fixed in Firefox 155, Firefox ESR 153.2, Firefox ESR 140.15 and Firefox ESR 115.40 Low Severity internally found bugs fixed in Firefox 155, Firefox ESR 153.2, Firefox ESR 140.15 and Firefox ESR 115.40 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.22 2026/08/19 02:36:12 gutteridge Exp $ d9 1 @ 1.22 log @firefox140: update to 140.14 Mozilla Foundation Security Advisory 2026-76 Security Vulnerabilities fixed in Firefox ESR 140.14 Announced August 18, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.14 #CVE-2026-74934: Site isolation issue in the Graphics: CanvasWebGL component Reporter satyamasd Impact high References Bug 2050584 #CVE-2026-74935: Privilege escalation in the DOM: Networking component Reporter Yaqoub Aldurayhim Impact high References Bug 2051013 #CVE-2026-74936: Use-after-free in the JavaScript: WebAssembly component Reporter Amy Burnett of OpenAI Impact high References Bug 2052688 #CVE-2026-74939: Privilege escalation in the DOM: Navigation component Reporter choeseyeong Impact high References Bug 2054416 #CVE-2026-74940: Use-after-free in the Graphics: Text component Reporter kiyong Impact high References Bug 2054842 #CVE-2026-74941: Privilege escalation in the Graphics: CanvasWebGL component Reporter Jacolon Walker Impact high References Bug 2055056 #CVE-2026-74942: Privilege escalation in the Remote Settings Client component Reporter Gal Ankonina Impact high References Bug 2056571 #CVE-2026-74943: Use-after-free in the Graphics: ImageLib component Reporter Abdulaziz Alasaiqah Impact high References Bug 2057308 #CVE-2026-74944: Use-after-free in the DOM: Core & HTML component Reporter Amy Burnett of OpenAI Impact high References Bug 2057778 #CVE-2026-74945: Information disclosure in the Graphics: Text component Reporter Abdulaziz Alasaiqah Impact high References Bug 2057808 #CVE-2026-74946: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter locust1b Impact high References Bug 2059997 #CVE-2026-74948: Information disclosure in the Graphics component Reporter Yaqoub Aldurayhim Impact high References Bug 2060106 #CVE-2026-74949: Privilege escalation due to use-after-free in the Graphics: Canvas2D component Reporter r00tdaddy Impact high References Bug 2060245 #CVE-2026-74953: Privilege escalation in the Networking: Cookies component Reporter Satoki Tsuji Impact moderate References Bug 2022382 #CVE-2026-74957: Mitigation bypass in the Safe Browsing component Reporter Tomoya Nakanishi Impact moderate References Bug 2041906 #CVE-2026-74959: Mitigation bypass in the Storage: Cache API component Reporter David Bors at Snyk Security Labs Impact moderate References Bug 2047853 #CVE-2026-74960: Site isolation issue in the WebExtensions component Reporter Khanh Nguyen Impact moderate References Bug 2049148 #CVE-2026-74962: Site isolation issue in the Networking: Cookies component Reporter Yaqoub Aldurayhim Impact moderate References Bug 2050425 #CVE-2026-74963: Same-origin policy bypass in the Networking: Cookies component Reporter 5up3rh3i Impact moderate References Bug 2050482 #CVE-2026-74964: Integer overflow in the Graphics component Reporter 5up3rh3i Impact moderate References Bug 2053327 #CVE-2026-74965: Privilege escalation in the Shell Integration component Reporter Khanh Nguyen Impact moderate References Bug 2053455 #CVE-2026-74967: Same-origin policy bypass in the Audio/Video: Playback component Reporter The Mozilla Fuzzing Team Impact moderate References Bug 2055697 #CVE-2026-74969: Use-after-free in the Layout: Text and Fonts component Reporter Hyeonjun Ahn Impact moderate References Bug 2056065 #CVE-2026-74971: Information disclosure in the DOM: UI Events & Focus Handling component Reporter avlidienbrunn Impact moderate References Bug 2057204 #CVE-2026-74972: Information disclosure in the DOM: Push Subscriptions component Reporter Kagami Rosylight Impact moderate References Bug 2059053 #CVE-2026-74973: Race condition, use-after-free in the Graphics component Reporter r00tdaddy Impact moderate References Bug 2060357 #CVE-2026-74974: Same-origin policy bypass in the Graphics: ImageLib component Reporter The Mozilla Fuzzing Team Impact moderate References Bug 2061794 #CVE-2026-74976: JIT miscompilation in the JavaScript Engine: JIT component Reporter anbu Impact low References Bug 1952164 #CVE-2026-74983: Mitigation bypass in the Data Loss Prevention component Reporter 5up3rh3i Impact low References Bug 2051897 #CVE-2026-74987: Internally found bugs fixed in Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154 Reporter Nicolas Silva, Tom Ritter and the Mozilla Fuzzing Team Impact high Description Internally found bugs present in Firefox ESR 140.13, Firefox ESR 153.0 and Firefox 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. References High Severity internally found bugs fixed in Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154 Moderate Severity internally found bugs fixed in Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154 Low Severity internally found bugs fixed in Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154 #CVE-2026-74990: Internally found bugs fixed in Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154 Reporter Christian Holler, Jan de Mooij, Tom Ritter and the Mozilla Fuzzing Team Impact high Description Internally found bugs present in Firefox ESR 115.38, Firefox ESR 140.13, Firefox ESR 153.0 and Firefox 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. References High Severity internally found bugs fixed in Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154 Moderate Severity internally found bugs fixed in Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.21 2026/07/21 16:30:32 gutteridge Exp $ d4 1 a4 1 MOZ_BRANCH= 140.14 @ 1.21 log @firefox140: update to 140.13 Mozilla Foundation Security Advisory 2026-70 Security Vulnerabilities fixed in Firefox ESR 140.13 Announced July 21, 2026 Impact critical Products Firefox ESR Fixed in Firefox ESR 140.13 #CVE-2026-15718: Invalid pointer in the JavaScript: WebAssembly component Reporter Christian Holler Impact critical Description We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. References Bug 2045443 #CVE-2026-15719: Site isolation issue in the DOM: Navigation component Reporter Atsushi Sada Impact critical Description We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. References Bug 2043820 #CVE-2026-16349: Same-origin policy bypass in the DOM: Navigation component Reporter Tran Quac Impact high References Bug 2034682 #CVE-2026-16350: Incorrect boundary conditions in the Audio/Video: cubeb component Reporter Tomoya Nakanishi Impact high References Bug 2042033 #CVE-2026-16362: Use-after-free in the WebRTC: Audio/Video component Reporter crixer Impact high References Bug 2043188 #CVE-2026-16351: Sandbox escape due to use-after-free in the DOM: Navigation component Reporter Yaqoub Aldurayhim Impact high References Bug 2045468 #CVE-2026-16352: Sandbox escape due to use-after-free in the Disability Access APIs component Reporter Oskar L Impact high References Bug 2046416 #CVE-2026-16363: JIT miscompilation in the JavaScript: WebAssembly component Reporter Nebula Security Impact high References Bug 2047689 #CVE-2026-16353: Invalid pointer in the DOM: Bindings (WebIDL) component Reporter fedek Impact high References Bug 2049523 #CVE-2026-16354: Information disclosure in the Graphics: ImageLib component Reporter satyamasd Impact high References Bug 2050626 #CVE-2026-16368: Incorrect boundary conditions in the JavaScript: WebAssembly component Reporter Nebula Security Impact high References Bug 2051015 #CVE-2026-16369: Integer overflow in the JavaScript: WebAssembly component Reporter Amy Burnett of OpenAI Impact high References Bug 2051854 #CVE-2026-16355: JIT miscompilation in the JavaScript Engine: JIT component Reporter Amy Burnett of OpenAI Impact high References Bug 2052207 #CVE-2026-16356: Sandbox escape due to use-after-free in the Disability Access APIs component Reporter Oskar L Impact high References Bug 2052562 #CVE-2026-16357: Incorrect boundary conditions in the Graphics component Reporter 5up3rh3i Impact high References Bug 2053326 #CVE-2026-16371: Privilege escalation in the DOM: Navigation component Reporter stevej Impact moderate References Bug 2008369 #CVE-2026-16374: Information disclosure in the Framework component in DevTools Reporter Tomoya Nakanishi Impact moderate References Bug 2027519 #CVE-2026-16375: Site isolation issue in the Networking: HTTP component Reporter pakhunov.anton.n Impact moderate References Bug 2032140 #CVE-2026-16377: Mitigation bypass in the PDF Viewer component Reporter Nikola Kojic Impact moderate References Bug 2037770 #CVE-2026-16379: Privilege escalation in the DOM: Content Processes component Reporter Shu Takahashi Impact moderate References Bug 2039452 #CVE-2026-16358: Site isolation issue in the Graphics: WebRender component Reporter Hcamael Impact moderate References Bug 2040119 #CVE-2026-16381: Same-origin policy bypass in the Networking: DNS component Reporter Rintaro Kawasugi Impact moderate References Bug 2041001 #CVE-2026-16383: Mitigation bypass in the DOM: Networking component Reporter Ibuki Sato and Tomoya Nakanishi Impact moderate References Bug 2041902 #CVE-2026-16387: Site isolation issue in the Networking component Reporter Atsushi Sada Impact moderate References Bug 2043200 #CVE-2026-16390: Mitigation bypass in the Enterprise Policies component Reporter Souma Ohsawa Impact moderate References Bug 2044527 #CVE-2026-16391: Information disclosure in the Storage: IndexedDB component Reporter Tomoya Nakanishi Impact moderate References Bug 2044536 #CVE-2026-16359: Incorrect boundary conditions in the Audio/Video: GMP component Reporter Jacolon Walker Impact moderate References Bug 2045424 #CVE-2026-16396: Privilege escalation in WebExtensions Reporter Quy Pham Impact moderate References Bug 2047240 #CVE-2026-16405: Information disclosure in the Networking: WebSockets component Reporter Yaqoub Aldurayhim Impact low References Bug 2036591 #CVE-2026-16412: Memory safety bugs fixed in Firefox ESR 140.13 and Firefox 153 Reporter Christian Holler, Frederik Braun, Justin Link, Simon Friedberger, Tom Ritter, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References High-severity memory safety bugs fixed in Firefox ESR 140.13 and Firefox 153 Moderate-severity memory safety bugs fixed in Firefox ESR 140.13 and Firefox 153 Low-severity memory safety bugs fixed in Firefox ESR 140.13 and Firefox 153 #CVE-2026-16360: Memory safety bugs fixed in Firefox ESR 115.38, Firefox ESR 140.13 and Firefox 153 Reporter Andrew McCreight, Jan de Mooij, Tom Ritter, Vincent Hilla and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References High-severity memory safety bugs fixed in Firefox ESR 115.38, Firefox ESR 140.13 and Firefox 153 Moderate-severity memory safety bugs fixed in Firefox ESR 115.38, Firefox ESR 140.13 and Firefox 153 #CVE-2026-16361: Memory safety bugs fixed in Firefox ESR 115.38 and Firefox ESR 140.13 Reporter The Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.37 and Firefox ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References High-severity memory safety bugs fixed in Firefox ESR 115.38 and Firefox ESR 140.13 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.20 2026/07/13 04:36:34 wiz Exp $ d4 1 a4 1 MOZ_BRANCH= 140.13 @ 1.20 log @*: recursive bump for libmpg123 dependency in lame @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.19 2026/06/16 16:16:43 gutteridge Exp $ d4 1 a4 1 MOZ_BRANCH= 140.12 a8 1 PKGREVISION= 1 @ 1.19 log @firefox140: update to 140.12 Update during freeze approved by maya@@. Mozilla Foundation Security Advisory 2026-58 Security Vulnerabilities fixed in Firefox ESR 140.12 Announced June 16, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.12 #CVE-2026-12289: Privilege escalation in the Graphics: WebRender component Reporter choeseyeong Impact high References Bug 2023443 #CVE-2026-12290: Memory safety bug fixed in Firefox ESR 140.12 Reporter jayjayjazz Impact high References Bug 2024852 #CVE-2026-12291: Use-after-free in the Networking: HTTP component Reporter Zijie Zhao Impact high References Bug 2036929 #CVE-2026-12292: Incorrect boundary conditions in the Web Audio component Reporter Zijie Zhao Impact high References Bug 2038465 #CVE-2026-12294: Sandbox escape in the DOM: Workers component Reporter Quy Pham Impact high References Bug 2039873 #CVE-2026-12295: Sandbox escape in the DOM: Navigation component Reporter Yaqoub Aldurayhim Impact high References Bug 2040160 #CVE-2026-12298: Memory safety bug fixed in Firefox ESR 140.12 Reporter Haruka Yamazaki Impact high References Bug 2041981 #CVE-2026-12296: Sandbox escape in the Security: Process Sandboxing component Reporter Yaqoub Aldurayhim Impact high References Bug 2040515 #CVE-2026-12297: Sandbox escape due to incorrect boundary conditions in the Networking component Reporter zx Impact high References Bug 2041610 #CVE-2026-12299: JIT miscompilation in the DOM: Core & HTML component Reporter Hyeonjun Ahn Impact high References Bug 2043139 #CVE-2026-12329: Memory safety bug fixed in Firefox ESR 140.12 Reporter Michael Froman Impact high References Bug 2044738 #CVE-2026-12302: Mitigation bypass in the DOM: Security component Reporter lebr0nli Impact moderate References Bug 2034489 #CVE-2026-12304: Same-origin policy bypass in the Networking: Cookies component Reporter Yaqoub Aldurayhim Impact moderate References Bug 2034944 #CVE-2026-12305: Memory safety bug fixed in Firefox ESR 140.12 Reporter Zijie Zhao Impact moderate References Bug 2037290 #CVE-2026-12306: Memory safety bug fixed in Firefox ESR 140.12 Reporter Mihalis Haatainen Impact moderate References Bug 2037323 #CVE-2026-12307: Memory safety bug fixed in Firefox ESR 140.12 Reporter Atsushi Sada Impact moderate References Bug 2038133 #CVE-2026-12308: Memory safety bug fixed in Firefox ESR 140.12 Reporter Mihalis Haatainen Impact moderate References Bug 2038302 #CVE-2026-12309: Memory safety bug fixed in Firefox ESR 140.12 Reporter Yaqoub Aldurayhim Impact moderate References Bug 2038476 #CVE-2026-12310: Memory safety bug fixed in Firefox ESR 140.12 Reporter Carl Pearson Impact moderate References Bug 2039707 #CVE-2026-12311: Information disclosure, sandbox escape in the Security: Process Sandboxing component Reporter Yaqoub Aldurayhim Impact moderate References Bug 2040177 #CVE-2026-12312: Memory safety bug fixed in Firefox ESR 140.12 Reporter Rintaro Kawasugi Impact moderate References Bug 2040383 #CVE-2026-12313: Information disclosure, sandbox escape in the Security: Process Sandboxing component Reporter evyatar Impact moderate References Bug 2040477 #CVE-2026-12314: Memory safety bug fixed in Firefox ESR 140.12 Reporter satyamasd Impact moderate References Bug 2041856 #CVE-2026-12315: Mitigation bypass in the DOM: Security component Reporter Nguyen Minh Impact moderate References Bug 2042058 #CVE-2026-12330: Incorrect boundary conditions in the Internationalization component Reporter Mozilla Fuzzing Team Impact moderate References Bug 2029326 #CVE-2026-12324: Incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Mihalis Haatainen Impact low References Bug 2038444 #CVE-2026-12325: Denial-of-service in the Graphics: ImageLib component Reporter Securin Impact low References Bug 2039443 #CVE-2026-12327: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152 Reporter Christian Holler, Jens Stutte, Nika Layzell, Randell Jesup, Tom Schuster and the Mozilla Fuzzing Team Impact moderate Description Memory safety bugs present in Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Moderate Severity memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152 #CVE-2026-12328: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152 Reporter Andrew McCreight, Randell Jesup, Tom Ritter and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References High Severity memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.18 2026/06/11 07:17:47 wiz Exp $ d9 1 @ 1.19.2.1 log @Pullup ticket #7190 - requested by gutteridge www/firefox140-l10n: Security fix www/firefox140: Security fix Revisions pulled up: - www/firefox140-l10n/Makefile 1.14 - www/firefox140-l10n/distinfo 1.14 - www/firefox140/Makefile 1.21 - www/firefox140/distinfo 1.19 --- Module Name: pkgsrc Committed By: gutteridge Date: Tue Jul 21 16:30:32 UTC 2026 Modified Files: pkgsrc/www/firefox140: Makefile distinfo Log Message: firefox140: update to 140.13 Mozilla Foundation Security Advisory 2026-70 Security Vulnerabilities fixed in Firefox ESR 140.13 Announced July 21, 2026 Impact critical Products Firefox ESR Fixed in Firefox ESR 140.13 #CVE-2026-15718: Invalid pointer in the JavaScript: WebAssembly component Reporter Christian Holler Impact critical Description We are aware that exploit code for this is public however we are not aware = of any attacks in the wild abusing this flaw. References Bug 2045443 #CVE-2026-15719: Site isolation issue in the DOM: Navigation component Reporter Atsushi Sada Impact critical Description We are aware that exploit code for this is public however we are not aware = of any attacks in the wild abusing this flaw. References Bug 2043820 #CVE-2026-16349: Same-origin policy bypass in the DOM: Navigation component Reporter Tran Quac Impact high References Bug 2034682 #CVE-2026-16350: Incorrect boundary conditions in the Audio/Video: cubeb co= mponent Reporter Tomoya Nakanishi Impact high References Bug 2042033 #CVE-2026-16362: Use-after-free in the WebRTC: Audio/Video component Reporter crixer Impact high References Bug 2043188 #CVE-2026-16351: Sandbox escape due to use-after-free in the DOM: Navigatio= n component Reporter Yaqoub Aldurayhim Impact high References Bug 2045468 #CVE-2026-16352: Sandbox escape due to use-after-free in the Disability Acc= ess APIs component Reporter Oskar L Impact high References Bug 2046416 #CVE-2026-16363: JIT miscompilation in the JavaScript: WebAssembly componen= t Reporter Nebula Security Impact high References Bug 2047689 #CVE-2026-16353: Invalid pointer in the DOM: Bindings (WebIDL) component Reporter fedek Impact high References Bug 2049523 #CVE-2026-16354: Information disclosure in the Graphics: ImageLib component Reporter satyamasd Impact high References Bug 2050626 #CVE-2026-16368: Incorrect boundary conditions in the JavaScript: WebAssemb= ly component Reporter Nebula Security Impact high References Bug 2051015 #CVE-2026-16369: Integer overflow in the JavaScript: WebAssembly component Reporter Amy Burnett of OpenAI Impact high References Bug 2051854 #CVE-2026-16355: JIT miscompilation in the JavaScript Engine: JIT component Reporter Amy Burnett of OpenAI Impact high References Bug 2052207 #CVE-2026-16356: Sandbox escape due to use-after-free in the Disability Acc= ess APIs component Reporter Oskar L Impact high References Bug 2052562 #CVE-2026-16357: Incorrect boundary conditions in the Graphics component Reporter 5up3rh3i Impact high References Bug 2053326 #CVE-2026-16371: Privilege escalation in the DOM: Navigation component Reporter stevej Impact moderate References Bug 2008369 #CVE-2026-16374: Information disclosure in the Framework component in DevTo= ols Reporter Tomoya Nakanishi Impact moderate References Bug 2027519 #CVE-2026-16375: Site isolation issue in the Networking: HTTP component Reporter pakhunov.anton.n Impact moderate References Bug 2032140 #CVE-2026-16377: Mitigation bypass in the PDF Viewer component Reporter Nikola Kojic Impact moderate References Bug 2037770 #CVE-2026-16379: Privilege escalation in the DOM: Content Processes compone= nt Reporter Shu Takahashi Impact moderate References Bug 2039452 #CVE-2026-16358: Site isolation issue in the Graphics: WebRender component Reporter Hcamael Impact moderate References Bug 2040119 #CVE-2026-16381: Same-origin policy bypass in the Networking: DNS component Reporter Rintaro Kawasugi Impact moderate References Bug 2041001 #CVE-2026-16383: Mitigation bypass in the DOM: Networking component Reporter Ibuki Sato and Tomoya Nakanishi Impact moderate References Bug 2041902 #CVE-2026-16387: Site isolation issue in the Networking component Reporter Atsushi Sada Impact moderate References Bug 2043200 #CVE-2026-16390: Mitigation bypass in the Enterprise Policies component Reporter Souma Ohsawa Impact moderate References Bug 2044527 #CVE-2026-16391: Information disclosure in the Storage: IndexedDB component Reporter Tomoya Nakanishi Impact moderate References Bug 2044536 #CVE-2026-16359: Incorrect boundary conditions in the Audio/Video: GMP comp= onent Reporter Jacolon Walker Impact moderate References Bug 2045424 #CVE-2026-16396: Privilege escalation in WebExtensions Reporter Quy Pham Impact moderate References Bug 2047240 #CVE-2026-16405: Information disclosure in the Networking: WebSockets compo= nent Reporter Yaqoub Aldurayhim Impact low References Bug 2036591 #CVE-2026-16412: Memory safety bugs fixed in Firefox ESR 140.13 and Firefox= 153 Reporter Christian Holler, Frederik Braun, Justin Link, Simon Friedberger, Tom R= itter, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 140.12 and Firefox 152. Some of t= hese bugs showed evidence of memory corruption and we presume that with eno= ugh effort some of these could have been=20 exploited to run arbitrary code. References High-severity memory safety bugs fixed in Firefox ESR 140.13 and Firefo= x 153 Moderate-severity memory safety bugs fixed in Firefox ESR 140.13 and Fi= refox 153 Low-severity memory safety bugs fixed in Firefox ESR 140.13 and Firefox= 153 #CVE-2026-16360: Memory safety bugs fixed in Firefox ESR 115.38, Firefox ES= R 140.13 and Firefox 153 Reporter Andrew McCreight, Jan de Mooij, Tom Ritter, Vincent Hilla and the Mozil= la Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Fi= refox 152. Some of these bugs showed evidence of memory corruption and we p= resume that with enough effort some of these=20 could have been exploited to run arbitrary code. References High-severity memory safety bugs fixed in Firefox ESR 115.38, Firefox E= SR 140.13 and Firefox 153 Moderate-severity memory safety bugs fixed in Firefox ESR 115.38, Firef= ox ESR 140.13 and Firefox 153 #CVE-2026-16361: Memory safety bugs fixed in Firefox ESR 115.38 and Firefox= ESR 140.13 Reporter The Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.37 and Firefox ESR 140.12. So= me of these bugs showed evidence of memory corruption and we presume that w= ith enough effort some of these could have been=20 exploited to run arbitrary code. References High-severity memory safety bugs fixed in Firefox ESR 115.38 and Firefo= x ESR 140.13 --- Module Name: pkgsrc Committed By: gutteridge Date: Tue Jul 21 16:31:06 UTC 2026 Modified Files: pkgsrc/www/firefox140-l10n: Makefile distinfo Log Message: firefox140-l10n: update to 140.13 @ text @d1 1 a1 1 # $NetBSD$ d4 1 a4 1 MOZ_BRANCH= 140.13 @ 1.19.2.2 log @Pullup ticket #7240 - requested by gutteridge www/firefox140: Security fix www/firefox140-l10n: Security fix Revisions pulled up: - www/firefox140-l10n/Makefile 1.15 - www/firefox140-l10n/distinfo 1.15 - www/firefox140/Makefile 1.22 - www/firefox140/distinfo 1.20 --- Module Name: pkgsrc Committed By: gutteridge Date: Wed Aug 19 02:36:12 UTC 2026 Modified Files: pkgsrc/www/firefox140: Makefile distinfo Log Message: firefox140: update to 140.14 --- Module Name: pkgsrc Committed By: gutteridge Date: Wed Aug 19 02:39:00 UTC 2026 Modified Files: pkgsrc/www/firefox140-l10n: Makefile distinfo Log Message: firefox140-l10n: update to 140.14 @ text @d4 1 a4 1 MOZ_BRANCH= 140.14 @ 1.18 log @gtk3: bump PKGREVISION for wayland option default change Recursive bump to hopefully fix bulk build fallout due to the unversioned change. @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.17 2026/05/21 15:34:05 gutteridge Exp $ d4 1 a4 1 MOZ_BRANCH= 140.11 a8 1 PKGREVISION= 1 @ 1.17 log @firefox140: update to 140.11 Mozilla Foundation Security Advisory 2026-48 Security Vulnerabilities fixed in Firefox ESR 140.11 Announced May 19, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.11 #CVE-2026-8946: Incorrect boundary conditions in the Audio/Video: Web Codecs component Reporter zx Impact high References Bug 2029070 #CVE-2026-8388: Incorrect boundary conditions in the JavaScript Engine: JIT component Reporter ggwhyp Impact high References Bug 2036978 #CVE-2026-8947: Use-after-free in the DOM: Bindings (WebIDL) component Reporter Satoki Tsuji Impact high References Bug 2038439 #CVE-2026-8391: Other issue in the JavaScript Engine component Reporter ggwhyp Impact high References Bug 2038575 #CVE-2026-8401: Sandbox escape in the Profile Backup component Reporter ggwhyp Impact high References Bug 2038679 #CVE-2026-8949: Integer overflow in the Widget: Win32 component Reporter q1 Impact moderate References Bug 1355639 #CVE-2026-8950: Same-origin policy bypass in the Networking: HTTP component Reporter Jakub Szymsza Impact moderate References Bug 1965430 #CVE-2026-8953: Sandbox escape due to use-after-free in the Disability Access APIs component Reporter stevej Impact moderate References Bug 2029511 #CVE-2026-8954: Incorrect boundary conditions, integer overflow in the Audio/Video component Reporter Ameen Basha M K Impact moderate References Bug 2030747 #CVE-2026-8955: Privilege escalation in the DOM: Workers component Reporter lebr0nli Impact moderate References Bug 2031064 #CVE-2026-8956: Integer overflow in the Networking: JAR component Reporter Yaqoub Aldurayhim Impact moderate References Bug 2032427 #CVE-2026-8957: Privilege escalation in the Enterprise Policies component Reporter Mateusz Dobrzyński Impact moderate References Bug 2033850 #CVE-2026-8958: Information disclosure, sandbox escape in the Security: Process Sandboxing component Reporter Yaqoub Aldurayhim Impact moderate References Bug 2034713 #CVE-2026-8959: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component Reporter Ameen Basha M K Impact moderate References Bug 2034754 #CVE-2026-8961: Spoofing issue in the Form Autofill component Reporter Hafiizh Impact low References Bug 1962625 #CVE-2026-8962: Mitigation bypass in the DOM: Security component Reporter Manojkumar Jaganathan Impact low References Bug 2004804 #CVE-2026-8968: Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component Reporter Tristan Madani Impact low References Bug 2030467 #CVE-2026-8970: Privilege escalation in the Security component Reporter pakhunov.anton.n Impact low References Bug 2032174 #CVE-2026-8974: Memory safety bugs fixed in Firefox ESR 140.11 and Firefox 151 Reporter Nika Layzell, Randell Jesup, Timothy Nikkel, Tom Schuster and the Mozilla Fuzzing Team Impact moderate Description Memory safety bugs present in Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.11 and Firefox 151 #CVE-2026-8975: Memory safety bugs fixed in Firefox ESR 115.36, Firefox ESR 140.11 and Firefox 151 Reporter Andrew McCreight, Valentin Gosu, Nika Layzell, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.35, Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.36, Firefox ESR 140.11 and Firefox 151 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.16 2026/05/07 20:25:32 gutteridge Exp $ d9 1 @ 1.16 log @firefox140: update to 140.10.2 Mozilla Foundation Security Advisory 2026-41 Security Vulnerabilities fixed in Firefox ESR 140.10.2 Announced May 7, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.10.2 #CVE-2026-8090: Use-after-free in the DOM: Networking component Reporter Kevin Brosnan Impact high References Bug 2034352 #CVE-2026-8094: Other issue in the WebRTC component Reporter Michael Froman Impact high References Bug 2035939 #CVE-2026-8092: Memory safety bugs fixed in Firefox ESR 115.35.2, Firefox ESR 140.10.2 and Firefox 150.0.2 Reporter Andrew McCreight, Christian Holler, Lee Salzman, Maurice Dauer, Tom Schuster, Wayne Mery and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.35.1, Firefox ESR 140.10.1 and Firefox 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.35.2, Firefox ESR 140.10.2 and Firefox 150.0.2 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.15 2026/04/30 18:51:22 gutteridge Exp $ d4 2 a5 2 MOZ_BRANCH= 140.10 MOZ_BRANCH_MINOR= .2esr @ 1.15 log @firefox140: update to 140.10.1 Mozilla Foundation Security Advisory 2026-36 Security Vulnerabilities fixed in Firefox ESR 140.10.1 Announced April 28, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.10.1 #CVE-2026-7320: Information disclosure due to incorrect boundary conditions in the Audio/Video component Reporter Xuehao Guo Impact high References Bug 2027433 #CVE-2026-7321: Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component Reporter The Mozilla Fuzzing Team Impact moderate References Bug 2029461 #CVE-2026-7322: Memory safety bugs fixed in Firefox ESR 115.35.1, Firefox ESR 140.10.1 and Firefox 150.0.1 Reporter C.M.Chang, Christian Holler, Steve Fink and the Mozilla Fuzzing Team Impact critical Description Memory safety bugs present in Firefox ESR 115.35.0, Firefox ESR 140.10.0 and Firefox 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.35.1, Firefox ESR 140.10.1 and Firefox 150.0.1 #CVE-2026-7323: Memory safety bugs fixed in Firefox ESR 140.10.1 and Firefox 150.0.1 Reporter Ryan Hunt, Steve Fink and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 140.10.0 and Firefox 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.10.1 and Firefox 150.0.1 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.14 2026/04/21 13:40:08 gutteridge Exp $ d5 1 a5 1 MOZ_BRANCH_MINOR= .1esr @ 1.14 log @firefox140: update to 140.10 Mozilla Foundation Security Advisory 2026-32 Security Vulnerabilities fixed in Firefox ESR 140.10 Announced April 21, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.10 #CVE-2026-6746: Use-after-free in the DOM: Core & HTML component Reporter Evyatar Ben Asher, Keane Lucas, Nicholas Carlini, Newton Cheng, Daniel Freeman, Alex Gaynor, and Joel Weinberger using Claude from Anthropic Impact high References Bug 2014596 #CVE-2026-6747: Use-after-free in the WebRTC component Reporter Nan Wang Impact high References Bug 2021769 #CVE-2026-6748: Uninitialized memory in the Audio/Video: Web Codecs component Reporter Inseo An Impact high References Bug 2022604 #CVE-2026-6749: Information disclosure due to uninitialized memory in the Graphics: Canvas2D component Reporter Inseo An Impact high References Bug 2022610 #CVE-2026-6750: Privilege escalation in the Graphics: WebRender component Reporter choeseyeong Impact high References Bug 2023407 #CVE-2026-6751: Uninitialized memory in the Audio/Video: Web Codecs component Reporter Joren Afman Impact high References Bug 2025883 #CVE-2026-6752: Incorrect boundary conditions in the WebRTC component Reporter jmwebdevelopement Impact high References Bug 2027499 #CVE-2026-6753: Incorrect boundary conditions in the WebRTC component Reporter jmwebdevelopement Impact high References Bug 2027501 #CVE-2026-6754: Use-after-free in the JavaScript Engine component Reporter Xuehao Guo Impact high References Bug 2027541 #CVE-2026-6757: Invalid pointer in the JavaScript: WebAssembly component Reporter Evyatar Ben Asher, Keane Lucas, Nicholas Carlini, Newton Cheng, Daniel Freeman, Alex Gaynor, and Joel Weinberger using Claude from Anthropic Impact moderate References Bug 2013588 #CVE-2026-6759: Use-after-free in the Widget: Cocoa component Reporter Steven Michaud Impact moderate References Bug 2016164 #CVE-2026-6761: Privilege escalation in the Networking component Reporter kiyong Impact moderate References Bug 2017857 #CVE-2026-6762: Spoofing issue in the DOM: Core & HTML component Reporter Farras Givari Impact moderate References Bug 2021080 #CVE-2026-6763: Mitigation bypass in the File Handling component Reporter Tomoya Nakanishi Impact moderate References Bug 2021666 #CVE-2026-6764: Incorrect boundary conditions in the DOM: Device Interfaces component Reporter Florian Impact moderate References Bug 2022162 #CVE-2026-6765: Information disclosure in the Form Autofill component Reporter ABDULAZIZ ALASAIQAH Impact moderate References Bug 2022419 #CVE-2026-6766: Incorrect boundary conditions in the Libraries component in NSS Reporter Haruto Kimura Impact moderate References Bug 2023207 #CVE-2026-6767: Other issue in the Libraries component in NSS Reporter Haruto Kimura Impact moderate References Bug 2023209 #CVE-2026-6769: Privilege escalation in the Debugger component Reporter Tomoya Nakanishi Impact moderate References Bug 2023753 #CVE-2026-6770: Other issue in the Storage: IndexedDB component Reporter Dai Impact moderate References Bug 2024220 #CVE-2026-6771: Mitigation bypass in the DOM: Security component Reporter Rayhan Hanaputra Impact moderate References Bug 2025067 #CVE-2026-6772: Incorrect boundary conditions in the Libraries component in NSS Reporter sseehra Impact moderate References Bug 2026089 #CVE-2026-6776: Incorrect boundary conditions in the WebRTC: Networking component Reporter Nan Wang Impact low References Bug 2021770 #CVE-2026-6785: Memory safety bugs fixed in Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 Reporter Andrew McCreight, Ashley Zebrowski, Brian Grinstead, Christian Holler, Maurice Dauer, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 #CVE-2026-6786: Memory safety bugs fixed in Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 Reporter Alex Franchuk, Andrew McCreight, Brian Grinstead, Christian Holler, Jan de Mooij, Maurice Dauer, Sebastian Hengst, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.13 2026/04/09 18:37:06 gutteridge Exp $ d5 1 a5 1 MOZ_BRANCH_MINOR= .0esr @ 1.13 log @firefox140: update to 140.9.1 Mozilla Foundation Security Advisory 2026-27 Security Vulnerabilities fixed in Firefox ESR 140.9.1 Announced April 7, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.9.1 #CVE-2026-5732: Incorrect boundary conditions, integer overflow in the Graphics: Text component Reporter Sajeeb Lohani Impact high References Bug 2017867 #CVE-2026-5731: Memory safety bugs fixed in Firefox ESR 115.34.1, Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2 Reporter Brian Grinstead, Christian Holler, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.34.0, Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.34.1, Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2 #CVE-2026-5734: Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2 Reporter Brian Grinstead, Christian Holler, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.12 2026/03/24 13:11:35 gutteridge Exp $ d4 2 a5 2 MOZ_BRANCH= 140.9 MOZ_BRANCH_MINOR= .1esr @ 1.12 log @firefox140: update to 140.9 Mozilla Foundation Security Advisory 2026-22 Security Vulnerabilities fixed in Firefox ESR 140.9 Announced March 24, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.9 #CVE-2026-4684: Race condition, use-after-free in the Graphics: WebRender component Reporter Oskar L Impact high References Bug 2011129 #CVE-2026-4685: Incorrect boundary conditions in the Graphics: Canvas2D component Reporter Sajeeb Lohani Impact high References Bug 2016349 #CVE-2026-4686: Incorrect boundary conditions in the Graphics: Canvas2D component Reporter Sajeeb Lohani Impact high References Bug 2016351 #CVE-2026-4687: Sandbox escape due to incorrect boundary conditions in the Telemetry component Reporter Sajeeb Lohani Impact high References Bug 2016368 #CVE-2026-4688: Sandbox escape due to use-after-free in the Disability Access APIs component Reporter Sajeeb Lohani Impact high References Bug 2016373 #CVE-2026-4689: Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component Reporter Sajeeb Lohani Impact high References Bug 2016374 #CVE-2026-4690: Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component Reporter Sajeeb Lohani Impact high References Bug 2016375 #CVE-2026-4691: Use-after-free in the CSS Parsing and Computation component Reporter Fabius Artrel Impact high References Bug 2017512 #CVE-2026-4692: Sandbox escape in the Responsive Design Mode component Reporter Tom Ritter Impact high References Bug 2017643 #CVE-2026-4693: Incorrect boundary conditions in the Audio/Video: Playback component Reporter Sajeeb Lohani Impact high References Bug 2018102 #CVE-2026-4694: Incorrect boundary conditions, integer overflow in the Graphics component Reporter Sajeeb Lohani Impact high References Bug 2018430 #CVE-2026-4695: Incorrect boundary conditions in the Audio/Video: Web Codecs component Reporter Atte Kettunen Impact high References Bug 2020030 #CVE-2026-4696: Use-after-free in the Layout: Text and Fonts component Reporter Sota Wada Impact high References Bug 2020190 #CVE-2026-4697: Incorrect boundary conditions in the Audio/Video: Web Codecs component Reporter Lorenzo Impact high References Bug 2020422 #CVE-2026-4698: JIT miscompilation in the JavaScript Engine: JIT component Reporter maxpl0it working with Trend Micro Zero Day Initiative Impact high References Bug 2020906 #CVE-2026-4699: Incorrect boundary conditions in the Layout: Text and Fonts component Reporter Matej Smycka Impact high References Bug 2021863 #CVE-2026-4700: Mitigation bypass in the Networking: HTTP component Reporter pizzahunthack1 Impact moderate References Bug 2003766 #CVE-2026-4701: Use-after-free in the JavaScript Engine component Reporter Gary Kwong Impact moderate References Bug 2009303 #CVE-2026-4702: JIT miscompilation in the JavaScript Engine component Reporter Evyatar Ben Asher, Keane Lucas, Nicholas Carlini, Newton Cheng, Daniel Freeman, Alex Gaynor, and Joel Weinberger using Claude from Anthropic Impact moderate References Bug 2013560 #CVE-2026-4704: Denial-of-service in the WebRTC: Signaling component Reporter Evyatar Ben Asher, Keane Lucas, Nicholas Carlini, Newton Cheng, Daniel Freeman, Alex Gaynor, and Joel Weinberger using Claude from Anthropic Impact moderate References Bug 2014868 #CVE-2026-4705: Undefined behavior in the WebRTC: Signaling component Reporter Evyatar Ben Asher, Keane Lucas, Nicholas Carlini, Newton Cheng, Daniel Freeman, Alex Gaynor, and Joel Weinberger using Claude from Anthropic Impact moderate References Bug 2014873 #CVE-2026-4706: Incorrect boundary conditions in the Graphics: Canvas2D component Reporter Jun Yang Impact moderate References Bug 2015091 #CVE-2026-4707: Incorrect boundary conditions in the Graphics: Canvas2D component Reporter Sajeeb Lohani Impact moderate References Bug 2015267 #CVE-2026-4708: Incorrect boundary conditions in the Graphics component Reporter Sajeeb Lohani Impact moderate References Bug 2015268 #CVE-2026-4709: Incorrect boundary conditions in the Audio/Video: GMP component Reporter Sajeeb Lohani Impact moderate References Bug 2016329 #CVE-2026-4710: Incorrect boundary conditions in the Audio/Video component Reporter Sajeeb Lohani Impact moderate References Bug 2016370 #CVE-2026-4711: Use-after-free in the Widget: Cocoa component Reporter Josh Aas Impact moderate References Bug 2017002 #CVE-2026-4712: Information disclosure in the Widget: Cocoa component Reporter Josh Aas Impact moderate References Bug 2017666 #CVE-2026-4713: Incorrect boundary conditions in the Graphics component Reporter Sajeeb Lohani Impact moderate References Bug 2018113 #CVE-2026-4714: Incorrect boundary conditions in the Audio/Video component Reporter Sajeeb Lohani Impact moderate References Bug 2018126 #CVE-2026-4715: Uninitialized memory in the Graphics: Canvas2D component Reporter Jun Yang Impact moderate References Bug 2018405 #CVE-2026-4716: Incorrect boundary conditions, uninitialized memory in the JavaScript Engine component Reporter Pwn2addr Impact moderate References Bug 2018592 #CVE-2026-4717: Privilege escalation in the Netmonitor component Reporter Satoki Tsuji Impact moderate References Bug 2021695 #CVE-2025-59375: Denial-of-service in the XML component Reporter Jan Horak Impact low References Bug 1988467 #CVE-2026-4718: Undefined behavior in the WebRTC: Signaling component Reporter Evyatar Ben Asher, Keane Lucas, Nicholas Carlini, Newton Cheng, Daniel Freeman, Alex Gaynor, and Joel Weinberger using Claude from Anthropic Impact low References Bug 2014864 #CVE-2026-4719: Incorrect boundary conditions in the Graphics: Text component Reporter Sajeeb Lohani Impact low References Bug 2016367 #CVE-2026-4720: Memory safety bugs fixed in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149 Reporter Christian Holler, Gabriele Svelto, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149 #CVE-2026-4721: Memory safety bugs fixed in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149 Reporter Christian Holler, Timothy Nikkel, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.11 2026/02/24 14:07:55 gutteridge Exp $ d5 1 a5 1 MOZ_BRANCH_MINOR= .0esr @ 1.12.2.1 log @Pullup ticket #7074 - requested by gutteridge www/firefox140: security fix www/firefox140-l10n: dependent update Revisions pulled up: - www/firefox140-l10n/Makefile 1.8 - www/firefox140-l10n/distinfo 1.8 - www/firefox140/Makefile 1.13 - www/firefox140/distinfo 1.12 --- Module Name: pkgsrc Committed By: gutteridge Date: Thu Apr 9 18:37:06 UTC 2026 Modified Files: pkgsrc/www/firefox140: Makefile distinfo Log Message: firefox140: update to 140.9.1 Mozilla Foundation Security Advisory 2026-27 Security Vulnerabilities fixed in Firefox ESR 140.9.1 Announced April 7, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.9.1 #CVE-2026-5732: Incorrect boundary conditions, integer overflow in the Grap= hics: Text component Reporter Sajeeb Lohani Impact high References Bug 2017867 #CVE-2026-5731: Memory safety bugs fixed in Firefox ESR 115.34.1, Firefox E= SR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.= 2 Reporter Brian Grinstead, Christian Holler, Tom Schuster and the Mozilla Fuzzing= Team Impact high Description Memory safety bugs present in Firefox ESR 115.34.0, Firefox ESR 140.9.0, Th= underbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of the= se bugs showed evidence of memory corruption and=20 we presume that with enough effort some of these could have been exploited = to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.34.1, Firefox ESR 140.9.1, = Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2 #CVE-2026-5734: Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbir= d ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2 Reporter Brian Grinstead, Christian Holler, Tom Schuster and the Mozilla Fuzzing= Team Impact high Description Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0,= Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidenc= e of memory corruption and we presume that with=20 enough effort some of these could have been exploited to run arbitrary code= . References Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.= 1, Firefox 149.0.2 and Thunderbird 149.0.2 --- Module Name: pkgsrc Committed By: gutteridge Date: Thu Apr 9 18:39:26 UTC 2026 Modified Files: pkgsrc/www/firefox140-l10n: Makefile distinfo Log Message: firefox140-l10n: update to 140.9.1 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.12 2026/03/24 13:11:35 gutteridge Exp $ d5 1 a5 1 MOZ_BRANCH_MINOR= .1esr @ 1.12.2.2 log @Revbump all Go packages after go126 security fix @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.4.2.1 2026/01/14 18:58:46 maya Exp $ @ 1.12.2.3 log @Pullup ticket #7083 - requested by gutteridge www/firefox140: security fix www/firefox140-l10n: dependent update Revisions pulled up: - www/firefox140-l10n/Makefile 1.9 - www/firefox140-l10n/distinfo 1.9 - www/firefox140/Makefile 1.14 - www/firefox140/distinfo 1.13 --- Module Name: pkgsrc Committed By: gutteridge Date: Tue Apr 21 13:40:08 UTC 2026 Modified Files: pkgsrc/www/firefox140: Makefile distinfo Log Message: firefox140: update to 140.10 Mozilla Foundation Security Advisory 2026-32 Security Vulnerabilities fixed in Firefox ESR 140.10 Announced April 21, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.10 #CVE-2026-6746: Use-after-free in the DOM: Core & HTML component Reporter Evyatar Ben Asher, Keane Lucas, Nicholas Carlini, Newton Cheng, Daniel Freeman, Alex Gaynor, and Joel Weinberger using Claude from Anthropic Impact high References Bug 2014596 #CVE-2026-6747: Use-after-free in the WebRTC component Reporter Nan Wang Impact high References Bug 2021769 #CVE-2026-6748: Uninitialized memory in the Audio/Video: Web Codecs component Reporter Inseo An Impact high References Bug 2022604 #CVE-2026-6749: Information disclosure due to uninitialized memory in the Graphics: Canvas2D component Reporter Inseo An Impact high References Bug 2022610 #CVE-2026-6750: Privilege escalation in the Graphics: WebRender component Reporter choeseyeong Impact high References Bug 2023407 #CVE-2026-6751: Uninitialized memory in the Audio/Video: Web Codecs component Reporter Joren Afman Impact high References Bug 2025883 #CVE-2026-6752: Incorrect boundary conditions in the WebRTC component Reporter jmwebdevelopement Impact high References Bug 2027499 #CVE-2026-6753: Incorrect boundary conditions in the WebRTC component Reporter jmwebdevelopement Impact high References Bug 2027501 #CVE-2026-6754: Use-after-free in the JavaScript Engine component Reporter Xuehao Guo Impact high References Bug 2027541 #CVE-2026-6757: Invalid pointer in the JavaScript: WebAssembly component Reporter Evyatar Ben Asher, Keane Lucas, Nicholas Carlini, Newton Cheng, Daniel Freeman, Alex Gaynor, and Joel Weinberger using Claude from Anthropic Impact moderate References Bug 2013588 #CVE-2026-6759: Use-after-free in the Widget: Cocoa component Reporter Steven Michaud Impact moderate References Bug 2016164 #CVE-2026-6761: Privilege escalation in the Networking component Reporter kiyong Impact moderate References Bug 2017857 #CVE-2026-6762: Spoofing issue in the DOM: Core & HTML component Reporter Farras Givari Impact moderate References Bug 2021080 #CVE-2026-6763: Mitigation bypass in the File Handling component Reporter Tomoya Nakanishi Impact moderate References Bug 2021666 #CVE-2026-6764: Incorrect boundary conditions in the DOM: Device Interfaces component Reporter Florian Impact moderate References Bug 2022162 #CVE-2026-6765: Information disclosure in the Form Autofill component Reporter ABDULAZIZ ALASAIQAH Impact moderate References Bug 2022419 #CVE-2026-6766: Incorrect boundary conditions in the Libraries component in NSS Reporter Haruto Kimura Impact moderate References Bug 2023207 #CVE-2026-6767: Other issue in the Libraries component in NSS Reporter Haruto Kimura Impact moderate References Bug 2023209 #CVE-2026-6769: Privilege escalation in the Debugger component Reporter Tomoya Nakanishi Impact moderate References Bug 2023753 #CVE-2026-6770: Other issue in the Storage: IndexedDB component Reporter Dai Impact moderate References Bug 2024220 #CVE-2026-6771: Mitigation bypass in the DOM: Security component Reporter Rayhan Hanaputra Impact moderate References Bug 2025067 #CVE-2026-6772: Incorrect boundary conditions in the Libraries component in NSS Reporter sseehra Impact moderate References Bug 2026089 #CVE-2026-6776: Incorrect boundary conditions in the WebRTC: Networking component Reporter Nan Wang Impact low References Bug 2021770 #CVE-2026-6785: Memory safety bugs fixed in Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 Reporter Andrew McCreight, Ashley Zebrowski, Brian Grinstead, Christian Holler, Maurice Dauer, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 #CVE-2026-6786: Memory safety bugs fixed in Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 Reporter Alex Franchuk, Andrew McCreight, Brian Grinstead, Christian Holler, Jan de Mooij, Maurice Dauer, Sebastian Hengst, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150 --- Module Name: pkgsrc Committed By: gutteridge Date: Tue Apr 21 13:42:06 UTC 2026 Modified Files: pkgsrc/www/firefox140-l10n: Makefile distinfo Log Message: firefox140-l10n: update to 140.10 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.12.2.2 2026/04/22 14:32:19 maya Exp $ d4 2 a5 2 MOZ_BRANCH= 140.10 MOZ_BRANCH_MINOR= .0esr @ 1.12.2.4 log @Pullup ticket #7087 - requested by gutteridge www/firefox140: security fix www/firefox140-l10n: dependent update Revisions pulled up: - www/firefox140-l10n/Makefile 1.10 - www/firefox140-l10n/distinfo 1.10 - www/firefox140/Makefile 1.15 - www/firefox140/distinfo 1.14-1.15 - www/firefox140/patches/patch-media_ffvpx_libavcodec_parser__list.c 1.1-1.2 --- Module Name: pkgsrc Committed By: gutteridge Date: Thu Apr 30 18:51:23 UTC 2026 Modified Files: pkgsrc/www/firefox140: Makefile distinfo Added Files: pkgsrc/www/firefox140/patches: patch-media_ffvpx_libavcodec_parser__list.c Log Message: firefox140: update to 140.10.1 Mozilla Foundation Security Advisory 2026-36 Security Vulnerabilities fixed in Firefox ESR 140.10.1 Announced April 28, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.10.1 #CVE-2026-7320: Information disclosure due to incorrect boundary conditions in the Audio/Video component Reporter Xuehao Guo Impact high References Bug 2027433 #CVE-2026-7321: Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component Reporter The Mozilla Fuzzing Team Impact moderate References Bug 2029461 #CVE-2026-7322: Memory safety bugs fixed in Firefox ESR 115.35.1, Firefox ESR 140.10.1 and Firefox 150.0.1 Reporter C.M.Chang, Christian Holler, Steve Fink and the Mozilla Fuzzing Team Impact critical Description Memory safety bugs present in Firefox ESR 115.35.0, Firefox ESR 140.10.0 and Firefox 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.35.1, Firefox ESR 140.10.1 and Firefox 150.0.1 #CVE-2026-7323: Memory safety bugs fixed in Firefox ESR 140.10.1 and Firefox 150.0.1 Reporter Ryan Hunt, Steve Fink and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 140.10.0 and Firefox 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.10.1 and Firefox 150.0.1 --- Module Name: pkgsrc Committed By: gutteridge Date: Thu Apr 30 18:53:28 UTC 2026 Modified Files: pkgsrc/www/firefox140-l10n: Makefile distinfo Log Message: firefox140-l10n: update to 140.10.1 --- Module Name: pkgsrc Committed By: gutteridge Date: Thu Apr 30 21:47:25 UTC 2026 Modified Files: pkgsrc/www/firefox140: distinfo pkgsrc/www/firefox140/patches: patch-media_ffvpx_libavcodec_parser__list.c Log Message: firefox140: note new patch added was already fixed upstream @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.12.2.3 2026/04/26 19:35:21 bsiegert Exp $ d5 1 a5 1 MOZ_BRANCH_MINOR= .1esr @ 1.12.2.5 log @Pullup ticket #7102 - requested by gutteridge www/firefox140: Security fix www/firefox140-l10n: Security fix Revisions pulled up: - www/firefox140-l10n/Makefile 1.11 - www/firefox140-l10n/distinfo 1.11 - www/firefox140/Makefile 1.16 - www/firefox140/distinfo 1.16 --- Module Name: pkgsrc Committed By: gutteridge Date: Thu May 7 20:25:32 UTC 2026 Modified Files: pkgsrc/www/firefox140: Makefile distinfo Log Message: firefox140: update to 140.10.2 Mozilla Foundation Security Advisory 2026-41 Security Vulnerabilities fixed in Firefox ESR 140.10.2 Announced May 7, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.10.2 #CVE-2026-8090: Use-after-free in the DOM: Networking component Reporter Kevin Brosnan Impact high References Bug 2034352 #CVE-2026-8094: Other issue in the WebRTC component Reporter Michael Froman Impact high References Bug 2035939 #CVE-2026-8092: Memory safety bugs fixed in Firefox ESR 115.35.2, Firefox E= SR 140.10.2 and Firefox 150.0.2 Reporter Andrew McCreight, Christian Holler, Lee Salzman, Maurice Dauer, Tom Sch= uster, Wayne Mery and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.35.1, Firefox ESR 140.10.1 an= d Firefox 150.0.1. Some of these bugs showed evidence of memory corruption = and we presume that with enough effort some of=20 these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.35.2, Firefox ESR 140.10.2 = and Firefox 150.0.2 --- Module Name: pkgsrc Committed By: gutteridge Date: Thu May 7 20:26:58 UTC 2026 Modified Files: pkgsrc/www/firefox140-l10n: Makefile distinfo Log Message: firefox140-l10n: update to 140.10.2 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.12.2.4 2026/05/02 19:26:59 bsiegert Exp $ d5 1 a5 1 MOZ_BRANCH_MINOR= .2esr @ 1.12.2.6 log @Pullup ticket #7127 - requested by gutteridge www/firefox140: security fix www/firefox140-l10n: dependent update Revisions pulled up: - www/firefox140-l10n/Makefile 1.12 - www/firefox140-l10n/distinfo 1.12 - www/firefox140/Makefile 1.17 - www/firefox140/distinfo 1.17 - www/firefox140/patches/patch-media_ffvpx_libavcodec_parser__list.c deleted --- Module Name: pkgsrc Committed By: gutteridge Date: Thu May 21 15:34:06 UTC 2026 Modified Files: pkgsrc/www/firefox140: Makefile distinfo Removed Files: pkgsrc/www/firefox140/patches: patch-media_ffvpx_libavcodec_parser__list.c Log Message: firefox140: update to 140.11 Mozilla Foundation Security Advisory 2026-48 Security Vulnerabilities fixed in Firefox ESR 140.11 Announced May 19, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.11 #CVE-2026-8946: Incorrect boundary conditions in the Audio/Video: Web Codecs component Reporter zx Impact high References Bug 2029070 #CVE-2026-8388: Incorrect boundary conditions in the JavaScript Engine: JIT component Reporter ggwhyp Impact high References Bug 2036978 #CVE-2026-8947: Use-after-free in the DOM: Bindings (WebIDL) component Reporter Satoki Tsuji Impact high References Bug 2038439 #CVE-2026-8391: Other issue in the JavaScript Engine component Reporter ggwhyp Impact high References Bug 2038575 #CVE-2026-8401: Sandbox escape in the Profile Backup component Reporter ggwhyp Impact high References Bug 2038679 #CVE-2026-8949: Integer overflow in the Widget: Win32 component Reporter q1 Impact moderate References Bug 1355639 #CVE-2026-8950: Same-origin policy bypass in the Networking: HTTP component Reporter Jakub Szymsza Impact moderate References Bug 1965430 #CVE-2026-8953: Sandbox escape due to use-after-free in the Disability Access APIs component Reporter stevej Impact moderate References Bug 2029511 #CVE-2026-8954: Incorrect boundary conditions, integer overflow in the Audio/Video component Reporter Ameen Basha M K Impact moderate References Bug 2030747 #CVE-2026-8955: Privilege escalation in the DOM: Workers component Reporter lebr0nli Impact moderate References Bug 2031064 #CVE-2026-8956: Integer overflow in the Networking: JAR component Reporter Yaqoub Aldurayhim Impact moderate References Bug 2032427 #CVE-2026-8957: Privilege escalation in the Enterprise Policies component Reporter Mateusz Dobrzyński Impact moderate References Bug 2033850 #CVE-2026-8958: Information disclosure, sandbox escape in the Security: Process Sandboxing component Reporter Yaqoub Aldurayhim Impact moderate References Bug 2034713 #CVE-2026-8959: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component Reporter Ameen Basha M K Impact moderate References Bug 2034754 #CVE-2026-8961: Spoofing issue in the Form Autofill component Reporter Hafiizh Impact low References Bug 1962625 #CVE-2026-8962: Mitigation bypass in the DOM: Security component Reporter Manojkumar Jaganathan Impact low References Bug 2004804 #CVE-2026-8968: Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component Reporter Tristan Madani Impact low References Bug 2030467 #CVE-2026-8970: Privilege escalation in the Security component Reporter pakhunov.anton.n Impact low References Bug 2032174 #CVE-2026-8974: Memory safety bugs fixed in Firefox ESR 140.11 and Firefox 151 Reporter Nika Layzell, Randell Jesup, Timothy Nikkel, Tom Schuster and the Mozilla Fuzzing Team Impact moderate Description Memory safety bugs present in Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.11 and Firefox 151 #CVE-2026-8975: Memory safety bugs fixed in Firefox ESR 115.36, Firefox ESR 140.11 and Firefox 151 Reporter Andrew McCreight, Valentin Gosu, Nika Layzell, Tom Schuster and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 115.35, Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.36, Firefox ESR 140.11 and Firefox 151 --- Module Name: pkgsrc Committed By: gutteridge Date: Thu May 21 15:35:54 UTC 2026 Modified Files: pkgsrc/www/firefox140-l10n: Makefile distinfo Log Message: firefox140-l10n: update to 140.11 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.12.2.5 2026/05/08 11:16:50 maya Exp $ d4 2 a5 2 MOZ_BRANCH= 140.11 MOZ_BRANCH_MINOR= .0esr @ 1.11 log @firefox140: update to 140.8 Mozilla Foundation Security Advisory 2026-15 Security Vulnerabilities fixed in Firefox ESR 140.8 Announced February 24, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.8 #CVE-2026-2757: Incorrect boundary conditions in the WebRTC: Audio/Video component Reporter Igor Morgenstern Impact high References Bug 2001637 #CVE-2026-2758: Use-after-free in the JavaScript: GC component Reporter Gary Kwong Impact high References Bug 2009608 #CVE-2026-2759: Incorrect boundary conditions in the Graphics: ImageLib component Reporter stevej Impact high References Bug 2010933 #CVE-2026-2760: Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component Reporter Oskar L Impact high References Bug 2011062 #CVE-2026-2761: Sandbox escape in the Graphics: WebRender component Reporter Oskar L Impact high References Bug 2011063 #CVE-2026-2762: Integer overflow in the JavaScript: Standard Library component Reporter André Bargull Impact high References Bug 2011649 #CVE-2026-2763: Use-after-free in the JavaScript Engine component Reporter Information to follow Impact high References Bug 2012018 #CVE-2026-2764: JIT miscompilation, use-after-free in the JavaScript Engine: JIT component Reporter Information to follow Impact high References Bug 2012608 #CVE-2026-2765: Use-after-free in the JavaScript Engine component Reporter Information to follow Impact high References Bug 2013562 #CVE-2026-2766: Use-after-free in the JavaScript Engine: JIT component Reporter Information to follow Impact high References Bug 2013583 #CVE-2026-2767: Use-after-free in the JavaScript: WebAssembly component Reporter Sajeeb Lohani Impact high References Bug 2013741 #CVE-2026-2768: Sandbox escape in the Storage: IndexedDB component Reporter Sajeeb Lohani Impact high References Bug 2014101 #CVE-2026-2769: Use-after-free in the Storage: IndexedDB component Reporter Information to follow Impact high References Bug 2014550 #CVE-2026-2770: Use-after-free in the DOM: Bindings (WebIDL) component Reporter Information to follow Impact high References Bug 2014585 #CVE-2026-2771: Undefined behavior in the DOM: Core & HTML component Reporter Information to follow Impact high References Bug 2014593 #CVE-2026-2772: Use-after-free in the Audio/Video: Playback component Reporter Information to follow Impact high References Bug 2014827 #CVE-2026-2773: Incorrect boundary conditions in the Web Audio component Reporter Information to follow Impact high References Bug 2014832 #CVE-2026-2774: Integer overflow in the Audio/Video component Reporter Information to follow Impact high References Bug 2014883 #CVE-2026-2775: Mitigation bypass in the DOM: HTML Parser component Reporter Information to follow Impact high References Bug 2015199 #CVE-2026-2776: Sandbox escape due to incorrect boundary conditions in the Telemetry component in External Software Reporter Sajeeb Lohani Impact high References Bug 2015266 #CVE-2026-2777: Privilege escalation in the Messaging System component Reporter Richard Belisle Impact high References Bug 2015305 #CVE-2026-2778: Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component Reporter Sajeeb Lohani Impact high References Bug 2016358 #CVE-2026-2779: Incorrect boundary conditions in the Networking: JAR component Reporter Alex Mayorga Impact moderate References Bug 1164141 #CVE-2026-2780: Privilege escalation in the Netmonitor component Reporter RyotaK Impact moderate References Bug 2007829 #CVE-2026-2781: Integer overflow in the Libraries component in NSS Reporter Clay Ver Valen Impact moderate References Bug 2009552 #CVE-2026-2782: Privilege escalation in the Netmonitor component Reporter Cody Impact moderate References Bug 2010743 #CVE-2026-2783: Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component Reporter x0e Impact moderate References Bug 2010943 #CVE-2026-2784: Mitigation bypass in the DOM: Security component Reporter D. Santos Impact moderate References Bug 2012984 #CVE-2026-2785: Invalid pointer in the JavaScript Engine component Reporter Information to follow Impact moderate References Bug 2013549 #CVE-2026-2786: Use-after-free in the JavaScript Engine component Reporter Information to follow Impact moderate References Bug 2013612 #CVE-2026-2787: Use-after-free in the DOM: Window and Location component Reporter Information to follow Impact moderate References Bug 2014560 #CVE-2026-2788: Incorrect boundary conditions in the Audio/Video: GMP component Reporter Information to follow Impact moderate References Bug 2014824 #CVE-2026-2789: Use-after-free in the Graphics: ImageLib component Reporter Information to follow Impact moderate References Bug 2015179 #CVE-2026-2790: Same-origin policy bypass in the Networking: JAR component Reporter Surya Dev Singh Impact low References Bug 2008426 #CVE-2026-2791: Mitigation bypass in the Networking: Cache component Reporter Information to follow Impact low References Bug 2015220 #CVE-2026-2792: Memory safety bugs fixed in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 Reporter Andrew McCreight, Maurice Dauer, Olli Pettay, Ryan Hunt Impact high Description Memory safety bugs present in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 #CVE-2026-2793: Memory safety bugs fixed in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 Reporter Andrew McCreight, Christian Holler Impact high Description Memory safety bugs present in Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.10 2026/02/17 00:26:49 gutteridge Exp $ d4 1 a4 1 MOZ_BRANCH= 140.8 @ 1.10 log @firefox140: update to 140.7.1 Addresses a single high-severity security issue: CVE-2026-2447: Heap buffer overflow in libvpx @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.9 2026/01/27 08:40:49 wiz Exp $ d4 2 a5 2 MOZ_BRANCH= 140.7 MOZ_BRANCH_MINOR= .1esr @ 1.9 log @*: recursive bump for removal of cairo's xcb option @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.8 2026/01/13 17:20:06 gutteridge Exp $ d5 1 a5 1 MOZ_BRANCH_MINOR= .0esr a8 1 PKGREVISION= 1 @ 1.8 log @firefox140: update to 140.7.0 Mozilla Foundation Security Advisory 2026-03 Security Vulnerabilities fixed in Firefox ESR 140.7 Announced January 13, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.7 #CVE-2026-0877: Mitigation bypass in the DOM: Security component Reporter mingijung Impact high References Bug 1999257 #CVE-2026-0878: Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Oskar L Impact high References Bug 2003989 #CVE-2026-0879: Sandbox escape due to incorrect boundary conditions in the Graphics component Reporter Oskar L Impact high References Bug 2004602 #CVE-2026-0880: Sandbox escape due to integer overflow in the Graphics component Reporter Oskar L Impact high References Bug 2005014 #CVE-2026-0882: Use-after-free in the IPC component Reporter Randell Jesup Impact high References Bug 1924125 #CVE-2025-14327: Spoofing issue in the Downloads Panel component Reporter Caro Kann Impact moderate References Bug 1970743 #CVE-2026-0883: Information disclosure in the Networking component Reporter Vladislav Plyatsok Impact moderate References Bug 1989340 #CVE-2026-0884: Use-after-free in the JavaScript Engine component Reporter Gary Kwong and Nan Wang Impact moderate References Bug 2003588 #CVE-2026-0885: Use-after-free in the JavaScript: GC component Reporter Irvan Kurniawan Impact moderate References Bug 2003607 #CVE-2026-0886: Incorrect boundary conditions in the Graphics component Reporter Oskar L Impact moderate References Bug 2005658 #CVE-2026-0887: Clickjacking issue, information disclosure in the PDF Viewer component Reporter Lyra Rebane Impact moderate References Bug 2006500 #CVE-2026-0890: Spoofing issue in the DOM: Copy & Paste and Drag & Drop component Reporter Edgar Chen Impact low References Bug 2005081 #CVE-2026-0891: Memory safety bugs fixed in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147 Reporter Andrew McCreight, Dennis Jackson and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.7 2026/01/07 08:49:18 wiz Exp $ d9 1 @ 1.7 log @*: recursive bump for icu 78.1 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.6 2026/01/06 23:27:50 gutteridge Exp $ d4 1 a4 1 MOZ_BRANCH= 140.6 a8 1 PKGREVISION= 3 @ 1.6 log @firefox140: fix builds with ICU >= 78.1 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.5 2025/12/22 06:08:17 adam Exp $ d9 1 a9 1 PKGREVISION= 2 @ 1.5 log @revbump for x264 @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.4 2025/12/11 11:05:21 leot Exp $ d9 1 a9 1 PKGREVISION= 1 @ 1.4 log @firefox140{,-l10n}: Update to 140.6.0 Changes: 140.6.0 - Security fixes (MFSA2025-94) Discussed with PMC and ok by during carefulperiod 2, thanks! @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.3 2025/11/12 19:48:10 leot Exp $ d9 1 @ 1.4.2.1 log @Pullup ticket #7044 - requested by gutteridge www/firefox140: Security fix www/firefox140-l10n: Security fix Revisions pulled up: - www/firefox140-l10n/Makefile 1.4 - www/firefox140-l10n/distinfo 1.4 - www/firefox140/Makefile 1.8 - www/firefox140/distinfo 1.8 --- Module Name: pkgsrc Committed By: gutteridge Date: Tue Jan 13 17:20:06 UTC 2026 Modified Files: pkgsrc/www/firefox140: Makefile distinfo Log Message: firefox140: update to 140.7.0 Mozilla Foundation Security Advisory 2026-03 Security Vulnerabilities fixed in Firefox ESR 140.7 Announced January 13, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.7 #CVE-2026-0877: Mitigation bypass in the DOM: Security component Reporter mingijung Impact high References Bug 1999257 #CVE-2026-0878: Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component Reporter Oskar L Impact high References Bug 2003989 #CVE-2026-0879: Sandbox escape due to incorrect boundary conditions in the Graphics component Reporter Oskar L Impact high References Bug 2004602 #CVE-2026-0880: Sandbox escape due to integer overflow in the Graphics component Reporter Oskar L Impact high References Bug 2005014 #CVE-2026-0882: Use-after-free in the IPC component Reporter Randell Jesup Impact high References Bug 1924125 #CVE-2025-14327: Spoofing issue in the Downloads Panel component Reporter Caro Kann Impact moderate References Bug 1970743 #CVE-2026-0883: Information disclosure in the Networking component Reporter Vladislav Plyatsok Impact moderate References Bug 1989340 #CVE-2026-0884: Use-after-free in the JavaScript Engine component Reporter Gary Kwong and Nan Wang Impact moderate References Bug 2003588 #CVE-2026-0885: Use-after-free in the JavaScript: GC component Reporter Irvan Kurniawan Impact moderate References Bug 2003607 #CVE-2026-0886: Incorrect boundary conditions in the Graphics component Reporter Oskar L Impact moderate References Bug 2005658 #CVE-2026-0887: Clickjacking issue, information disclosure in the PDF Viewer component Reporter Lyra Rebane Impact moderate References Bug 2006500 #CVE-2026-0890: Spoofing issue in the DOM: Copy & Paste and Drag & Drop component Reporter Edgar Chen Impact low References Bug 2005081 #CVE-2026-0891: Memory safety bugs fixed in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147 Reporter Andrew McCreight, Dennis Jackson and the Mozilla Fuzzing Team Impact high Description Memory safety bugs present in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147 --- Module Name: pkgsrc Committed By: gutteridge Date: Tue Jan 13 17:23:35 UTC 2026 Modified Files: pkgsrc/www/firefox140-l10n: Makefile distinfo Log Message: firefox140-l10n: update to 140.7.0 Sync with www/firefox140 version. @ text @d1 1 a1 1 # $NetBSD$ d4 1 a4 1 MOZ_BRANCH= 140.7 @ 1.4.2.2 log @Pullup ticket #7045 - requested by gutteridge www/firefox140: security fix www/firefox140-l10n: dependent update Revisions pulled up: - www/firefox140-l10n/Makefile 1.6 - www/firefox140-l10n/distinfo 1.6 - www/firefox140/Makefile 1.11 - www/firefox140/distinfo 1.10 --- Module Name: pkgsrc Committed By: gutteridge Date: Tue Feb 24 14:07:55 UTC 2026 Modified Files: pkgsrc/www/firefox140: Makefile distinfo Log Message: firefox140: update to 140.8 Mozilla Foundation Security Advisory 2026-15 Security Vulnerabilities fixed in Firefox ESR 140.8 Announced February 24, 2026 Impact high Products Firefox ESR Fixed in Firefox ESR 140.8 #CVE-2026-2757: Incorrect boundary conditions in the WebRTC: Audio/Video component Reporter Igor Morgenstern Impact high References Bug 2001637 #CVE-2026-2758: Use-after-free in the JavaScript: GC component Reporter Gary Kwong Impact high References Bug 2009608 #CVE-2026-2759: Incorrect boundary conditions in the Graphics: ImageLib component Reporter stevej Impact high References Bug 2010933 #CVE-2026-2760: Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component Reporter Oskar L Impact high References Bug 2011062 #CVE-2026-2761: Sandbox escape in the Graphics: WebRender component Reporter Oskar L Impact high References Bug 2011063 #CVE-2026-2762: Integer overflow in the JavaScript: Standard Library component Reporter André Bargull Impact high References Bug 2011649 #CVE-2026-2763: Use-after-free in the JavaScript Engine component Reporter Information to follow Impact high References Bug 2012018 #CVE-2026-2764: JIT miscompilation, use-after-free in the JavaScript Engine: JIT component Reporter Information to follow Impact high References Bug 2012608 #CVE-2026-2765: Use-after-free in the JavaScript Engine component Reporter Information to follow Impact high References Bug 2013562 #CVE-2026-2766: Use-after-free in the JavaScript Engine: JIT component Reporter Information to follow Impact high References Bug 2013583 #CVE-2026-2767: Use-after-free in the JavaScript: WebAssembly component Reporter Sajeeb Lohani Impact high References Bug 2013741 #CVE-2026-2768: Sandbox escape in the Storage: IndexedDB component Reporter Sajeeb Lohani Impact high References Bug 2014101 #CVE-2026-2769: Use-after-free in the Storage: IndexedDB component Reporter Information to follow Impact high References Bug 2014550 #CVE-2026-2770: Use-after-free in the DOM: Bindings (WebIDL) component Reporter Information to follow Impact high References Bug 2014585 #CVE-2026-2771: Undefined behavior in the DOM: Core & HTML component Reporter Information to follow Impact high References Bug 2014593 #CVE-2026-2772: Use-after-free in the Audio/Video: Playback component Reporter Information to follow Impact high References Bug 2014827 #CVE-2026-2773: Incorrect boundary conditions in the Web Audio component Reporter Information to follow Impact high References Bug 2014832 #CVE-2026-2774: Integer overflow in the Audio/Video component Reporter Information to follow Impact high References Bug 2014883 #CVE-2026-2775: Mitigation bypass in the DOM: HTML Parser component Reporter Information to follow Impact high References Bug 2015199 #CVE-2026-2776: Sandbox escape due to incorrect boundary conditions in the Telemetry component in External Software Reporter Sajeeb Lohani Impact high References Bug 2015266 #CVE-2026-2777: Privilege escalation in the Messaging System component Reporter Richard Belisle Impact high References Bug 2015305 #CVE-2026-2778: Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component Reporter Sajeeb Lohani Impact high References Bug 2016358 #CVE-2026-2779: Incorrect boundary conditions in the Networking: JAR component Reporter Alex Mayorga Impact moderate References Bug 1164141 #CVE-2026-2780: Privilege escalation in the Netmonitor component Reporter RyotaK Impact moderate References Bug 2007829 #CVE-2026-2781: Integer overflow in the Libraries component in NSS Reporter Clay Ver Valen Impact moderate References Bug 2009552 #CVE-2026-2782: Privilege escalation in the Netmonitor component Reporter Cody Impact moderate References Bug 2010743 #CVE-2026-2783: Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component Reporter x0e Impact moderate References Bug 2010943 #CVE-2026-2784: Mitigation bypass in the DOM: Security component Reporter D. Santos Impact moderate References Bug 2012984 #CVE-2026-2785: Invalid pointer in the JavaScript Engine component Reporter Information to follow Impact moderate References Bug 2013549 #CVE-2026-2786: Use-after-free in the JavaScript Engine component Reporter Information to follow Impact moderate References Bug 2013612 #CVE-2026-2787: Use-after-free in the DOM: Window and Location component Reporter Information to follow Impact moderate References Bug 2014560 #CVE-2026-2788: Incorrect boundary conditions in the Audio/Video: GMP component Reporter Information to follow Impact moderate References Bug 2014824 #CVE-2026-2789: Use-after-free in the Graphics: ImageLib component Reporter Information to follow Impact moderate References Bug 2015179 #CVE-2026-2790: Same-origin policy bypass in the Networking: JAR component Reporter Surya Dev Singh Impact low References Bug 2008426 #CVE-2026-2791: Mitigation bypass in the Networking: Cache component Reporter Information to follow Impact low References Bug 2015220 #CVE-2026-2792: Memory safety bugs fixed in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 Reporter Andrew McCreight, Maurice Dauer, Olli Pettay, Ryan Hunt Impact high Description Memory safety bugs present in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 #CVE-2026-2793: Memory safety bugs fixed in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 Reporter Andrew McCreight, Christian Holler Impact high Description Memory safety bugs present in Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. References Memory safety bugs fixed in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148 --- Module Name: pkgsrc Committed By: gutteridge Date: Tue Feb 24 14:09:03 UTC 2026 Modified Files: pkgsrc/www/firefox140-l10n: Makefile distinfo Log Message: firefox140-l10n: update to 140.8.0 @ text @d4 1 a4 1 MOZ_BRANCH= 140.8 @ 1.3 log @firefox140: Update to 140.5.0 ESR Changes: Various security fixes (MFSA2025-88). @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.2 2025/10/23 20:39:46 wiz Exp $ d4 1 a4 1 MOZ_BRANCH= 140.5 @ 1.2 log @*: recursive bump for pcre2 Running an old binary against the new pcre doesn't work: /usr/pkg/lib/libpcre2-8.so.0: version PCRE2_10.47 required by /usr/pkg/lib/libglib-2.0.so.0 not defined @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.1 2025/10/19 11:56:55 leot Exp $ d4 1 a4 1 MOZ_BRANCH= 140.4 a8 1 PKGREVISION= 1 @ 1.1 log @firefox140: Import firefox140-140.4.0 as www/firefox140 Mozilla Firefox is a free, open-source and cross-platform web browser for Windows, Linux, MacOS X and many other operating systems. It is fast and easy to use, and offers many advantages over other web browsers, such as tabbed browsing and the ability to block pop-up windows. Firefox also offers excellent bookmark and history management, and it can be extended by developers using industry standards such as XML, CSS, JavaScript, C++, etc. Many extensions are available. Note: Due to upstream's trademark policies, this package identifies as "Nightly" rather than "Firefox" by default. This package provides Firefox 140 Extended Support Release. Based on latest 140.x www/firefox and adjusted for ESR. Thanks to for help! @ text @d1 1 a1 1 # $NetBSD: Makefile,v 1.637 2025/07/23 13:57:34 ryoon Exp $ d9 1 @