When visiting directory listings for chrome:// URLs as source text, some
parameters were reflected (CVE-2022-36318).
When combining CSS properties for overflow and transform, the mouse cursor
could interact with different coordinates than displayed (CVE-2022-36319).
- https://bugs.mageia.org/show_bug.cgi?id=30669
- https://groups.google.com/a/mozilla.org/g/dev-tech-crypto/c/jYrL4b47r3A
- https://firefox-source-docs.mozilla.org/security/nss/releases/nss_3_81.html
- https://www.mozilla.org/en-US/security/advisories/mfsa2022-29/
- https://www.cve.org/CVERecord?id=CVE-2022-36318
- https://www.cve.org/CVERecord?id=CVE-2022-36319
- 8/core/firefox-91.12.0-1.mga8
- 8/core/firefox-l10n-91.12.0-1.mga8
Get the latest Linux and open source security news straight to your inbox.