SoylentNews
SoylentNews is people
https://soylentnews.org/

Title    Tor Browser 13.0.13 Unscheduled Emergency Release
Date    Sunday March 24, @12:58PM
Author    janrinok
Topic   
from the dept.
https://soylentnews.org/article.pl?sid=24/03/24/1229220

An Anonymous Coward writes:

https://blog.torproject.org/new-release-tor-browser-13013/

"This is an unscheduled emergency release with important security updates to Firefox for Desktop platforms. Android is unaffected."

https://www.mozilla.org/en-US/security/advisories/mfsa2024-16/#CVE-2024-29944

Mozilla Foundation Security Advisory 2024-16
Security Vulnerabilities fixed in Firefox ESR 115.9.1

Announced
March 22, 2024

https://www.mozilla.org/en-US/security/advisories/mfsa2024-16/#CVE-2024-29944

CVE-2024-29944: Privileged JavaScript Execution via Event Handlers

Impact critical

Description

An attacker was able to inject an event handler into a privileged object that would allow arbitrary JavaScript execution in the parent process. Note: This vulnerability affects Desktop Firefox only, it does not affect mobile versions of Firefox.

Tails 6.0 is affected. Please update Tails 6.0 to the current version when they release it.


Original Submission

Links

  1. "Original Submission" - https://soylentnews.org/submit.pl?op=viewsub&subid=62398

© Copyright 2024 - SoylentNews, All Rights Reserved

printed from SoylentNews, Tor Browser 13.0.13 Unscheduled Emergency Release on 2024-06-17 23:34:25