Шукати в статтях підтримки

Остерігайтеся нападів зловмисників. Mozilla ніколи не просить вас зателефонувати, надіслати номер телефону у повідомленні або поділитися з кимось особистими даними. Будь ласка, повідомте про підозрілі дії за допомогою меню “Повідомити про зловживання”

Докладніше

Firefox 128.1.0esr and 128.2.0esr security vulnerabilities

  • 2 відповіді
  • 0 мають цю проблему
  • Остання відповідь від James

more options

Tenable is reporting 128.1 and 128.2 as affected by vulnerabilities covered in CVEs' in their plugin 205009 ( https://www.tenable.com/plugins/nessus/205009 ). The rule they are applying is: Mozilla Firefox < 129 That implies that 128.1 and 128.2 are also < then 129 -> therefor vulnerable. Can you please answer 2 questions:

  • are Firefox 128.1 and 128.2 part of the same branch of product as 129? Or are they necessarily ESR?
  • are Firefox 128.1 and 128.2 affected by CVEs' covered in their TENABLE plugin 205009?
Tenable is reporting 128.1 and 128.2 as affected by vulnerabilities covered in CVEs' in their plugin 205009 ( https://www.tenable.com/plugins/nessus/205009 ). The rule they are applying is: Mozilla Firefox < 129 That implies that 128.1 and 128.2 are also < then 129 -> therefor vulnerable. Can you please answer 2 questions: * are Firefox 128.1 and 128.2 part of the same branch of product as 129? Or are they necessarily ESR? * are Firefox 128.1 and 128.2 affected by CVEs' covered in their TENABLE plugin 205009?

Усі відповіді (2)

more options

Змінено cor-el

Корисно?

more options

23kikes2 said

Tenable is reporting 128.1 and 128.2 as affected by vulnerabilities covered in CVEs' in their plugin 205009 ( https://www.tenable.com/plugins/nessus/205009 ). The rule they are applying is: Mozilla Firefox < 129 That implies that 128.1 and 128.2 are also < then 129 -> therefor vulnerable. Can you please answer 2 questions:
  • are Firefox 128.1 and 128.2 part of the same branch of product as 129? Or are they necessarily ESR?

There is no mention of Firefox 128.1.0 esr and 128.2.0 esr on that page though.

Fx 129.0 and Fx 128.1.0esr was released August 6, 2024 while the current Fx 128.2.0esr was released September 3, 2024 so it has security fixes that the older 129.0 and 128.1.0esr does not have. The Fx 128.2.0esr and Fx 130.0.1 are the current Releases. https://www.mozilla.org/firefox/releases/

ESR is short for Extended Support Releases as it only gets security and stability fixes and no new features so as to have longer term stability that Enterprise users need. Firefox 128 ESR is based on the Firefox 128.0 Release but gets longer term security/stability updates, say up to 128.15.0esr.

Корисно?

Запитати

Щоб відповідати на повідомлення, ви повинні ввійти у свій обліковий запис. Поставте нове питання, якщо ви ще не маєте облікового запису.