A flaw was discovered in libconfig-inifiles-perl, a Perl module to read .ini-style configuration files, which may result in the execution of arbitrary shell commands or file overwrite when processing specially crafted file names. For the stable distribution (trixie), this problem has been fixed in
It was discovered that incorrect memory management in the ffmpeg plugin for GStreamer could result in heap memory corruption. For the stable distribution (trixie), this problem has been fixed in version 1.26.2-1+deb13u1. We recommend that you upgrade your gst-libav1.0 packages.
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the stable distribution (trixie), these problems have been fixed in version 149.0.7827.155-1~deb13u1.
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the stable distribution (trixie), these problems have been fixed in version 1:140.12.0esr-1~deb13u1. We recommend that you upgrade your thunderbird packages.
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, bypass of the same-origin policy, privilege escalation, information disclosure, spoofing or sandbox escape. For the stable distribution (trixie), these problems have been fixed in