Tor Browser 13.0.13 Unscheduled Emergency Release
An Anonymous Coward writes:
https://blog.torproject.org/new-release-tor-browser-13013/
"This is an unscheduled emergency release with important security updates to Firefox for Desktop platforms. Android is unaffected."
https://www.mozilla.org/en-US/security/advisories/mfsa2024-16/#CVE-2024-29944
Mozilla Foundation Security Advisory 2024-16
Security Vulnerabilities fixed in Firefox ESR 115.9.1Announced
March 22, 2024https://www.mozilla.org/en-US/security/advisories/mfsa2024-16/#CVE-2024-29944
CVE-2024-29944: Privileged JavaScript Execution via Event Handlers
Impact critical
Description
An attacker was able to inject an event handler into a privileged object that would allow arbitrary JavaScript execution in the parent process. Note: This vulnerability affects Desktop Firefox only, it does not affect mobile versions of Firefox.
Tails 6.0 is affected. Please update Tails 6.0 to the current version when they release it.
Read more of this story at SoylentNews.