Mozilla released #Firefox 118.0.1 and ESR 115.3.1 to address CVE-2023-5217: Heap buffer overflow in libvpx
https://www.mozilla.org/en-US/security/advisories/mfsa2023-44/
I suppose I'll follow the Linux distro packages again for this one so I guess follow this thread or whatever
#Firefox on both #Flatpak and #Snap is already updated to 118.0.1 addressing CVE-2023-5217: Heap buffer overflow in libvpx
Make sure you are running 118.0.1 or update ASAP.
Tracking of traditional distro packages will continue throughout this thread as they arrive in various repositories (both Firefox and libvpx, along with Chromium builds not linked dynamically to the system lib - e.g. #linuxmint)
@topher Poor Martin's Firefox 118.0 package was barely a day old in Fedora ️ https://bodhi.fedoraproject.org/updates/?search=firefox