Ukukhishwa kweFirefox 102

Isiphequluli sewebhu seFirefox 102 sesikhishiwe. Ukukhishwa kweFirefox 102 kubhekwa njengeNsizakalo Yokusekela Enwetshiwe (ESR), okukhishwa kuyo izibuyekezo unyaka wonke. Ukwengeza, ukubuyekezwa kwegatsha langaphambilini okunesikhathi eside sokusekelwa kwe-91.11.0 kudalwe (izibuyekezo ezimbili ezengeziwe 91.12 kanye ne-91.13 zilindeleke esikhathini esizayo). Igatsha le-Firefox 103 lizodluliselwa esigabeni sokuhlola i-beta emahoreni azayo, ukukhululwa kwayo okuhlelelwe uJulayi 26.

Izindlela ezintsha eziqanjiwe kuFirefox 102:

  • Kungenzeka ukukhubaza ukuvulwa okuzenzakalelayo kwephaneli ngolwazi mayelana namafayela alandiwe ekuqaleni kokukhipha ngakunye okusha.
    Ukukhishwa kweFirefox 102
    Ukukhishwa kweFirefox 102
  • Kungezwe ukuvikelwa ekulandeleni izinguquko kwamanye amakhasi ngokusetha imingcele ku-URL. Isivikelo siza ekususeni amapharamitha asetshenziselwa ukulandelela (afana ne-utm_source) ku-URL futhi siyasebenza uma unika amandla imodi eqinile yokuvimbela okuqukethwe okungafunwa (Ukuvikelwa Kokulandelela Okuthuthukisiwe -> Okuqinile) kuzilungiselelo noma lapho uvula isayithi ekuphequluleni okuyimfihlo. imodi. Ukukhumula okukhethiwe kungaphinda kunikwe amandla ngokulungiselelwa okuvunyelwe kwe-privacy.query_stripping. kokuthi mayelana:config.
  • Imisebenzi yokuqopha umsindo iyiswa enqubweni ehlukile enokuhlukaniswa okuqinile kwebhokisi lesihlabathi.
  • Imodi yesithombe-esithombeni inikeza imibhalo engezansi uma ubuka amavidiyo avela ku-HBO Max, Funimation, Dailymotion, Tubi, Disney+ Hotstar kanye ne-SonyLIV. Ngaphambilini, imibhalo engezansi ibiboniswa kuphela i-YouTube, i-Prime Video, i-Netflix namasayithi esebenzisa ifomethi ye-WebVTT (Web Video Text Track).
  • Kuplathifomu ye-Linux, kungenzeka ukusebenzisa isevisi ye-Geoclue DBus ukucacisa indawo.
  • Ukubuka okuthuthukisiwe kwamadokhumenti e-PDF ngemodi yokugqama okuphezulu.
  • Kusixhumi esibonakalayo sabathuthukisi bewebhu, kuthebhu ethi Isihleli Sesitayela, ukwesekwa kwengeziwe ekuhlungeni amashidi esitayela ngamagama.
    Ukukhishwa kweFirefox 102
  • I-Streams API yengeza ikilasi le-TransformStream kanye nendlela ye-ReadableStream.pipeThrough, engasetshenziswa ukudala nokudlulisa idatha ngesimo sepayipi phakathi kwe-ReadableStream ne-WritableStream, enekhono lokubiza isibambi ukuze siguqule ukusakaza -block isisekelo.
  • Amakilasi e-ReadableStreamBYOBReader, ReadableByteStreamController kanye ne-ReadableStreamBYOBrequest engeziwe ku-Streams API ukuze kudluliselwe ngokuqondile idatha kanambambili, ukweqa imigqa yangaphakathi.
  • Impahla engajwayelekile, Window.sidebar, ehlinzekwe kuFirefox kuphela, ihlelelwe ukususwa.
  • Ukuhlanganiswa kwe-CSP (Content-Security-Policy) ne-WebAssembly kunikeziwe, okukuvumela ukuthi usebenzise imikhawulo ye-CSP kuWebAssembly futhi. Manje idokhumenti okuye kwacishwa ukusebenza kombhalo nge-CSP ngeke ikwazi ukusebenzisa i-WebAssembly bytecode ngaphandle uma kusethiwe inketho ethi 'unsafe-eval' noma 'wasm-unsafe-eval'.
  • Ku-CSS, imibuzo yemidiya isebenzisa isici sokubuyekeza, esikuvumela ukuthi ubophezele kuzinga lokubuyekeza ulwazi olusekelwa idivayisi yokukhiphayo (isibonelo, inani lisethwe ukuze "lihambe kancane" ezikrinini ze-e-book, "ngokushesha" ezikrinini ezivamile, kanye nokuthi “akukho” kokuphumayo kokuphrinta).
  • Ukuze uthole izengezo ezisekela inguqulo yesibili ye-manifest, kunikezwa ukufinyelela ku-Scripting API, okukuvumela ukuthi usebenzise izikripthi kumongo wamasayithi, ufake futhi ukhiphe i-CSS, futhi uphathe ukubhaliswa kwezikripthi zokucubungula okuqukethwe.
  • KuFirefox ye-Android, lapho ugcwalisa amafomu ngolwazi lwekhadi lesikweletu, kunikezwa isicelo esihlukile sokulondoloza imininingwane efakiwe yesistimu yokugcwalisa ngokuzenzakalela. Kulungiswe inkinga edale ukuphahlazeka ngenkathi kuvulwa ikhibhodi esesikrinini uma ibhodi lokunamathisela liqukethe inani elikhulu ledatha. Ixazulule inkinga ngokuma kweFirefox lapho ishintsha phakathi kwezinhlelo zokusebenza.

Ngokungeziwe ezenzweni ezintsha nokulungiswa kweziphazamisi, iFirefox 102 isusa ubungozi obungu-22, okungu-5 kwakho okumakwe njengokuyingozi. Ukuba sengozini kwe-CVE-2022-34479 kuvumela kuplathifomu ye-Linux ukuthi ibonise iwindi le-pop-up elidlula ibha yekheli (ingasetshenziswa ukulingisa isixhumi esibonakalayo sesiphequluli esikhohlisayo esidukisa umsebenzisi, isibonelo, ngobugebengu bokweba imininingwane ebucayi). Ukuba sengozini kwe-CVE-2022-34468 kukuvumela ukuthi udlule imikhawulo ye-CSP evimbela ukusetshenziswa kwekhodi ye-JavaScript ku-iframe nge-URI "javascript:" yokushintshanisa isixhumanisi. 5 ubungozi (okuqoqwe ngaphansi kwe-CVE-2022-34485, CVE-2022-34485 kanye ne-CVE-2022-34484) kubangelwa izinkinga zenkumbulo, njengokuchichima kwe-buffer kanye nokufinyelela ezindaweni zenkumbulo esezikhululiwe kakade. Ngokunokwenzeka, lezi zinkinga zingaholela ekusetshenzisweni kwekhodi yomhlaseli lapho kuvulwa amakhasi aklanywe ngokukhethekile.

Source: opennet.ru

Engeza amazwana