@@ -2,27 +2,26 @@ vulnerabilities:
22 - id : CVE-2022-25235
33 statement : " expat: Malformed 2- and 3-byte UTF-8 sequences can lead to arbitrary code execution"
44 purls :
5- - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt2 ?arch=arm64&distro=ubuntu-22.04"
6- - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt2 ?arch=amd64&distro=ubuntu-22.04"
5+ - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt1 ?arch=arm64&distro=ubuntu-22.04"
6+ - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt1 ?arch=amd64&distro=ubuntu-22.04"
77 expired_at : 2026-08-12
88 - id : CVE-2022-25236
99 statement : " expat: Namespace-separator characters in \" xmlns[:prefix]\" attribute values can lead to arbitrary code execution"
1010 purls :
11- - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt2 ?arch=arm64&distro=ubuntu-22.04"
12- - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt2 ?arch=amd64&distro=ubuntu-22.04"
11+ - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt1 ?arch=arm64&distro=ubuntu-22.04"
12+ - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt1 ?arch=amd64&distro=ubuntu-22.04"
1313 expired_at : 2026-08-12
1414 - id : CVE-2022-26485
1515 statement : " Mozilla: Use-after-free in XSLT parameter processing"
1616 purls :
17- - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt2 ?arch=arm64&distro=ubuntu-22.04"
18- - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt2 ?arch=amd64&distro=ubuntu-22.04"
17+ - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt1 ?arch=arm64&distro=ubuntu-22.04"
18+ - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt1 ?arch=amd64&distro=ubuntu-22.04"
1919 expired_at : 2026-08-12
2020 - id : CVE-2022-26486
2121 statement : " Mozilla: Use-after-free in WebGPU IPC Framework"
2222 purls :
23- - " pkg:deb/ubuntu/firefox@147.0.3%2Bbuild1-0ubuntu0.22.04.1~mt1?arch=amd64&distro=ubuntu-22.04"
24- - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt2?arch=arm64&distro=ubuntu-22.04"
25- - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt2?arch=amd64&distro=ubuntu-22.04"
23+ - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt1?arch=arm64&distro=ubuntu-22.04"
24+ - " pkg:deb/ubuntu/firefox@148.0.2%2Bbuild1-0ubuntu0.22.04.1~mt1?arch=amd64&distro=ubuntu-22.04"
2625 expired_at : 2026-08-12
2726 - id : CVE-2026-25547
2827 statement : " brace-expansion: brace-expansion: Denial of Service via unbounded brace range expansion"
0 commit comments