FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2025-07-21 20:49:39 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
bab7386a-582f-11f0-97d0-b42e991fc52eMozilla -- exploitable crash

security@mozilla.org reports:

A use-after-free in FontFaceSet resulted in a potentially exploitable crash.


Discovery 2025-06-24
Entry 2025-07-03
firefox
< 140.0,2

firefox-esr
< 115.25.0

thunderbird
< 140.0

CVE-2025-6424
https://nvd.nist.gov/vuln/detail/CVE-2025-6424
9320590b-58cf-11f0-b4ad-b42e991fc52eMozilla -- persistent UUID that identifies browser

security@mozilla.org reports:

An attacker who enumerated resources from the WebCompat extension could have obtained a persistent UUID that identified the browser, and persisted between containers and normal/private browsing mode, but not profiles. This vulnerability affects Firefox < 140, Firefox ESR < 115.25, Firefox ESR < 128.12, Thunderbird < 140, and Thunderbird < 128.12.


Discovery 2025-06-24
Entry 2025-07-04
firefox
< 140.0,2

firefox-esr
< 115.25.0

< 128.12

thunderbird
< 140.0

thunderbird
< 128.12

CVE-2025-6425
https://nvd.nist.gov/vuln/detail/CVE-2025-6425