Pale Moon Version 27.7.2 Released

Started by Corrine, February 01, 2018, 01:26:06 PM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

Corrine

Pale Moon has been updated to Version 27.7.2. This is a security and stability update.

Linux versions will follow shortly.

Although no specific security updates are included, the update includes a DiD (Defense-in-Depth) fix.  DiD is a fix that does not apply to a (potentially) actively exploitable vulnerability in Pale Moon, but prevents future vulnerabilities caused by the same code, e.g. when surrounding code changes, exposing the problem, or when new attack vectors are discovered.   

In addition, the update includes changed the performance timer resolution once more to a granularity of 1 ms.  This was made after evaluating more potential ways of abusing Spectre.  This takes the most cautious approach possible lacking more information (because apparently NDAs have been signed over this between mainstream players), follows Safari's lead, and should make it not just infeasible but downright impossible to use these timers for nefarious purposes in this context.

Release Notes


Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.