Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
mushufasa
on Jan 8, 2020
|
parent
|
context
|
favorite
| on:
Security vulnerabilities fixed in Firefox 72.0.1 a...
Anyone quickly know if this fixes a bug introduced yesterday by 72, or if this is a longstanding bug?
(e.g. Canonical seems to still be on firefox 71 via standard ppa)
discreditable
on Jan 8, 2020
|
next
[–]
ESR is affected, so it's possibly as old as July 2019. Maybe older.
dmix
on Jan 11, 2020
|
parent
|
next
[–]
The vuln is via IonMonkey JIT parsing. It might be as old as that project, I hope we find out how far back it goes.
looperhacks
on Jan 8, 2020
|
prev
[–]
I don't know exactly how this works, but it got a 2019 CVE number, so I guess it's older than yesterday?
lmkg
on Jan 8, 2020
|
parent
[–]
CVE numbers can be reserved in blocks. Don't know if Mozilla does that, but if so, a new vulnerability could get an older-looking number.
looperhacks
on Jan 8, 2020
|
root
|
parent
[–]
So you could still use older years numbers?
Consider applying for YC's Fall 2026 batch!
Applications
are open till July 27.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search:
(e.g. Canonical seems to still be on firefox 71 via standard ppa)