Mozilla has launched safety updates for all supported variations of its Firefox internet browser in addition to the Thunderbird electronic mail shopper. The updates deal with a important safety concern in WebP that’s being exploited within the wild.
The merchandise are affected by the identical important safety concern present in Google Chrome and Chromium browsers. Google launched a safety replace for Chrome the identical day to repair the vulnerability.
Firefox customers are suggested to replace the browser to the brand new model instantly. WebP is a picture format extensively used on the Web. Mozilla notes that opening a malicious WebP picture might “result in a buffer overflow within the content material course of,” which might lead to malicious code being executed on the person’s system.
Updates are already accessible. Firefox customers can choose Menu > Assist > About Firefox to view the present model and get the most recent replace. Thunderbird customers can choose Menu > Assist > About Thunderbird to do the identical. The most recent variations are as follows after putting in the replace:
- Firefox 117.0.1 secure
- Firefox 115.2.1 ESR
- Firefox 102.15.1 ESR
- Thunderbird 115.2.2
- Thunderbird 102.15.1
Firefox 117.0.1 is not only a safety replace, because it additionally fixes various points within the open supply internet browser. Two bugs that have an effect on the opening of hyperlinks are fastened within the launch. The primary typically prevented the “Reopen all tabs” choice within the just lately closed tabs menu from opening all tabs. The second noticed hyperlinks enabled exterior of Firefox on macOS typically not being opened in Firefox.
One other hotfix addresses a problem affecting extensions. Generally expansions had been accomplished whereas they had been nonetheless operating. This might occur when extensions used “an occasion web page for long-running duties.”
Mozilla has briefly reversed the change. The change prevents JavaScript from modifying the URL protocol. Mozilla plans to roll it out later.
Different fixes deal with a favorites menu visibility concern, a time zone detection concern on some websites, and a problem with audio worklets not engaged on websites that use WebAssembly exception dealing with.
You’ll be able to verify the complete model of Firefox 117.0.1 launch notes and security discover right here.
Besides that every one different browsers that assist the picture format are additionally affected by the WebP safety concern. Most have or will launch safety updates to handle the difficulty.
Now you: How usually do you see WebP photographs on the net?
Abstract
Article title
Mozilla fixes important safety concern with WebP in Firefox and Thunderbird
Description
Mozilla has launched safety updates for all supported variations of its Firefox internet browser in addition to the Thunderbird electronic mail shopper.
Writer
Martin Brinkmann
Editor
Ghacks Know-how Information
Brand
Commercial