Release of Firefox 111

The release of the web browser Firefox 111 has occurred. Additionally, an update for the long-term support branch — 102.9.0 has been formed. The Firefox 112 branch will soon enter beta testing, with a release scheduled for April 11.

Key innovations in Firefox 111:

  • The built-in account manager now includes the ability to create email address masks for the Firefox Relay service, allowing users to generate temporary email addresses for site registrations or subscriptions without revealing their real address. This feature is only available when the user is connected to a Firefox Account.
  • Support for the 'rel' attribute has been added to the tag, which allows the application of the 'rel=noreferrer' parameter to web form navigation to disable the transmission of the Referer header, or 'rel=noopener' to disable the Window.opener property and prevent access to the context from which the transition was made.
  • The OPFS (Origin-Private FileSystem) API has been enabled, which is an extension to the File System Access API for hosting files in a local filesystem tied to a storage associated with the current site. A site-specific virtual filesystem is created (other sites cannot access it), allowing web applications to read, modify, and save files and directories on the user's device.
  • As part of the implementation of the CSS Color Level 4 specification, CSS functions color(), lab(), lch(), oklab(), and oklch() have been added for defining colors in sRGB, RGB, HSL, HWB, LHC, and LAB color spaces. The functions are currently disabled by default and require the layout.css.more_color_4.enabled flag to be activated in about:config for use.
  • In CSS for '@page' rules used to define the page for print output, the 'page-orientation' property has been implemented to obtain information about the page orientation ('upright', 'rotate-left', and 'rotate-right').
  • In SVG, within elements, the use of context-stroke and context-fill values is now permitted.
  • A search.query function has been added to the API for extensions to send queries to the default search engine. The search.search function now includes a 'disposition' property to display the search result in a new tab or window.
  • An API has been added for saving PDF documents opened in the built-in viewer pdf.js. The GeckoView Print API, related to window.print, allows printing PDF files or PDF InputStreams.
  • Support for setting permissions through SitePermissions for the URI file:// has been added.
  • The SpiderMonkey JavaScript engine has gained initial support for RISC-V 64 architecture.
  • In the web development tools, searching in arbitrary files is now permitted.
  • Support for copying surfaces for VA-API (Video Acceleration API) using dmabuf has been implemented, which has accelerated the processing of VA-API surfaces and resolved artifact issues during rendering on some platforms.
  • In about:config, settings network.dns.max_any_priority_threads and network.dns.max_high_priority_threads have been added to manage the number of threads used for resolving hostnames in DNS.
  • On the Windows platform, the use of the platform-provided notification display system has been enabled.
  • On macOS, session restore support has been implemented.
  • Improvements in the Android version:
    • A built-in PDF document viewing capability has been implemented (without the need for prior download and opening in a separate viewer).
    • When selecting strict content blocking mode (strict), Total Cookie Protection is enabled by default, where a separate isolated cookie storage is used for each site, preventing cookies from being used to track movement between sites.
    • On Pixel devices running Android 12 and 13, the ability to send links to recently viewed pages directly from the Recents screen has been introduced.
    • The mechanism for opening content in a separate application (Open in app) has been revamped. A vulnerability (CVE-2023-25749) that allowed third-party Android applications to launch without user confirmation has been fixed.
    • A CanvasRenderThread handler has been enabled, ensuring that tasks related to WebGL are processed in a separate thread.

In addition to new features and bug fixes, Firefox 111 addresses 20 vulnerabilities. 14 of these vulnerabilities are marked as critical, with 9 vulnerabilities (classified under CVE-2023-28176 and CVE-2023-28177) arising from memory handling issues such as buffer overflows and dereferencing freed memory areas. These problems could potentially allow an attacker to execute code when specially crafted pages are opened.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster