Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Anyone quickly know if this fixes a bug introduced yesterday by 72, or if this is a longstanding bug?

(e.g. Canonical seems to still be on firefox 71 via standard ppa)



ESR is affected, so it's possibly as old as July 2019. Maybe older.


The vuln is via IonMonkey JIT parsing. It might be as old as that project, I hope we find out how far back it goes.


I don't know exactly how this works, but it got a 2019 CVE number, so I guess it's older than yesterday?


CVE numbers can be reserved in blocks. Don't know if Mozilla does that, but if so, a new vulnerability could get an older-looking number.


So you could still use older years numbers?




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: