Bug 33386 - Firefox 115.13
Summary: Firefox 115.13
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 9
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: QA Team
QA Contact: Sec team
URL:
Whiteboard: MGA9-64-OK MGA9-32-OK
Keywords: advisory, validated_update
Depends on:
Blocks:
 
Reported: 2024-07-10 09:04 CEST by Nicolas Salguero
Modified: 2024-07-16 05:22 CEST (History)
5 users (show)

See Also:
Source RPM: nss, firefox, firefox-l10n
CVE: CVE-2024-6600, CVE-2024-6601, CVE-2024-6602, CVE-2024-6603, CVE-2024-6604
Status comment:


Attachments

Description Nicolas Salguero 2024-07-10 09:04:39 CEST
Mozilla has released Firefox 115.13 on July 9:
https://www.mozilla.org/en-US/firefox/115.13.0/releasenotes/

Security issues fixed:
https://www.mozilla.org/en-US/security/advisories/mfsa2024-30/

Mozilla has released NSS 3.102 on July 3:
https://firefox-source-docs.mozilla.org/security/nss/releases/nss_3_102.html
Nicolas Salguero 2024-07-10 09:06:39 CEST

Source RPM: (none) => nss, firefox, firefox-l10n
Whiteboard: (none) => MGA9TOO
CVE: (none) => CVE-2024-6600, CVE-2024-6601, CVE-2024-6602, CVE-2024-6603, CVE-2024-6604

Comment 1 Nicolas Salguero 2024-07-10 16:12:25 CEST
Suggested advisory:
========================

The updated packages fix security vulnerabilities:

Memory corruption in WebGL API. (CVE-2024-6600)

Race condition in permission assignment. (CVE-2024-6601)

Memory corruption in NSS. (CVE-2024-6602)

Memory corruption in thread creation. (CVE-2024-6603)

Memory safety bugs fixed in Firefox 128, Firefox ESR 115.13, and Thunderbird 115.13. (CVE-2024-6604)

References:
https://www.mozilla.org/en-US/firefox/115.13.0/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2024-30/
https://firefox-source-docs.mozilla.org/security/nss/releases/nss_3_102.html
========================

Updated packages in core/updates_testing:
========================
lib64nss3-3.102.0-1.mga9
lib64nss-devel-3.102.0-1.mga9
lib64nss-static-devel-3.102.0-1.mga9
nss-3.102.0-1.mga9
nss-doc-3.102.0-1.mga9

firefox-115.13.0-1.mga9
firefox-af-115.13.0-1.mga9
firefox-an-115.13.0-1.mga9
firefox-ar-115.13.0-1.mga9
firefox-ast-115.13.0-1.mga9
firefox-az-115.13.0-1.mga9
firefox-be-115.13.0-1.mga9
firefox-bg-115.13.0-1.mga9
firefox-bn-115.13.0-1.mga9
firefox-br-115.13.0-1.mga9
firefox-bs-115.13.0-1.mga9
firefox-ca-115.13.0-1.mga9
firefox-cs-115.13.0-1.mga9
firefox-cy-115.13.0-1.mga9
firefox-da-115.13.0-1.mga9
firefox-de-115.13.0-1.mga9
firefox-el-115.13.0-1.mga9
firefox-en_CA-115.13.0-1.mga9
firefox-en_GB-115.13.0-1.mga9
firefox-en_US-115.13.0-1.mga9
firefox-eo-115.13.0-1.mga9
firefox-es_AR-115.13.0-1.mga9
firefox-es_CL-115.13.0-1.mga9
firefox-es_ES-115.13.0-1.mga9
firefox-es_MX-115.13.0-1.mga9
firefox-et-115.13.0-1.mga9
firefox-eu-115.13.0-1.mga9
firefox-fa-115.13.0-1.mga9
firefox-ff-115.13.0-1.mga9
firefox-fi-115.13.0-1.mga9
firefox-fr-115.13.0-1.mga9
firefox-fur-115.13.0-1.mga9
firefox-fy_NL-115.13.0-1.mga9
firefox-ga_IE-115.13.0-1.mga9
firefox-gd-115.13.0-1.mga9
firefox-gl-115.13.0-1.mga9
firefox-gu_IN-115.13.0-1.mga9
firefox-he-115.13.0-1.mga9
firefox-hi_IN-115.13.0-1.mga9
firefox-hr-115.13.0-1.mga9
firefox-hsb-115.13.0-1.mga9
firefox-hu-115.13.0-1.mga9
firefox-hy_AM-115.13.0-1.mga9
firefox-ia-115.13.0-1.mga9
firefox-id-115.13.0-1.mga9
firefox-is-115.13.0-1.mga9
firefox-it-115.13.0-1.mga9
firefox-ja-115.13.0-1.mga9
firefox-ka-115.13.0-1.mga9
firefox-kab-115.13.0-1.mga9
firefox-kk-115.13.0-1.mga9
firefox-km-115.13.0-1.mga9
firefox-kn-115.13.0-1.mga9
firefox-ko-115.13.0-1.mga9
firefox-lij-115.13.0-1.mga9
firefox-lt-115.13.0-1.mga9
firefox-lv-115.13.0-1.mga9
firefox-mk-115.13.0-1.mga9
firefox-mr-115.13.0-1.mga9
firefox-ms-115.13.0-1.mga9
firefox-my-115.13.0-1.mga9
firefox-nb_NO-115.13.0-1.mga9
firefox-nl-115.13.0-1.mga9
firefox-nn_NO-115.13.0-1.mga9
firefox-oc-115.13.0-1.mga9
firefox-pa_IN-115.13.0-1.mga9
firefox-pl-115.13.0-1.mga9
firefox-pt_BR-115.13.0-1.mga9
firefox-pt_PT-115.13.0-1.mga9
firefox-ro-115.13.0-1.mga9
firefox-ru-115.13.0-1.mga9
firefox-sc-115.13.0-1.mga9
firefox-si-115.13.0-1.mga9
firefox-sk-115.13.0-1.mga9
firefox-sl-115.13.0-1.mga9
firefox-sq-115.13.0-1.mga9
firefox-sr-115.13.0-1.mga9
firefox-sv_SE-115.13.0-1.mga9
firefox-szl-115.13.0-1.mga9
firefox-ta-115.13.0-1.mga9
firefox-te-115.13.0-1.mga9
firefox-tg-115.13.0-1.mga9
firefox-th-115.13.0-1.mga9
firefox-tl-115.13.0-1.mga9
firefox-tr-115.13.0-1.mga9
firefox-uk-115.13.0-1.mga9
firefox-ur-115.13.0-1.mga9
firefox-uz-115.13.0-1.mga9
firefox-vi-115.13.0-1.mga9
firefox-xh-115.13.0-1.mga9
firefox-zh_CN-115.13.0-1.mga9
firefox-zh_TW-115.13.0-1.mga9

from SRPMS:
nss-3.102.0-1.mga9.src.rpm
firefox-115.13.0-1.mga9.src.rpm
firefox-l10n-115.13.0-1.mga9.src.rpm

Whiteboard: MGA9TOO => (none)
Assignee: bugsquad => qa-bugs
Status: NEW => ASSIGNED
Version: Cauldron => 9

katnatek 2024-07-11 00:42:01 CEST

Keywords: (none) => advisory

Comment 2 Morgan Leijström 2024-07-11 04:46:26 CEST
mga9-64 OK
Plasma X11 nvidia-current
From testing: kernel desktop 6.6.37-1

  Tests passed:
Swedish localisation
Settings kept
Previously opened tabs restored
Video sites svt.se, urplay.se, Youtube
3xBanking, tax office
Printing page to boomaga
Printing pdf to real printer
Downloading and saving pdf

CC: (none) => fri

Comment 3 Jose Manuel López 2024-07-11 09:43:42 CEST
Mageia Plasma x86-64 with kernel 6.6.37

Installed in two computers Amd ryzen 4800 H and Intel I5 with integrated graphics. Works fine for me for the moment. 

Audio and video ok.
Banks ok.
Digital certificates ok.
Spanish location ok.
Settings and addons ok.
Account sync ok.


Greetings!!

CC: (none) => joselp

Comment 4 Thomas Andrews 2024-07-14 02:28:57 CEST
MGA9-64 Plasma, i5-7500, nvidia Quadro K620. Also HP Pavilion, AMD A8-4555.

Been using this for a couple of days now, with no issues.

CC: (none) => andrewsfarm

Comment 5 Thomas Andrews 2024-07-15 14:33:53 CEST
Looks good for 64-bit so far, though a couple of more tests wouldn't hurt.

I'll see if I can fire up Foolishness later today for a 32-bit test.
Comment 6 Herman Viaene 2024-07-15 16:58:04 CEST
MGA9-64 Plasma Wayland on HP-Pavillion
No installation issues.
Google, newspaper and manamana on youtube all work OK.

CC: (none) => herman.viaene

Comment 7 Thomas Andrews 2024-07-16 03:27:34 CEST
Had to wait for the line of severe thunderstorms to go through first, but Foolishness (MGA9-32 Xfce, P4, Radeon RV200) had no issues with this Firefox.It seems slow compared to my newer machines, but that is to be expected.

So, with no one having any issues to report, I'm giving this some OKs and validating.

CC: (none) => sysadmin-bugs
Keywords: (none) => validated_update
Whiteboard: (none) => MGA9-64-OK MGA9-32-OK

Comment 8 Mageia Robot 2024-07-16 05:22:18 CEST
An update for this issue has been pushed to the Mageia Updates repository.

https://advisories.mageia.org/MGASA-2024-0269.html

Resolution: (none) => FIXED
Status: ASSIGNED => RESOLVED


Note You need to log in before you can comment on or make changes to this bug.