nongnu: firefox: Update to 140.0 [security fixes].

Fixes CVE-2025-6424, CVE-2025-6425, CVE-2025-6426, CVE-2025-6427,
CVE-2025-6428, CVE-2025-6429, CVE-2025-6430, CVE-2025-6431,
CVE-2025-6432, CVE-2025-6433, CVE-2025-6434, CVE-2025-6435,
CVE-2025-6436.

* nongnu/packages/mozilla.scm (firefox): Update to 140.0.

Signed-off-by: Hilton Chain <hako@ultrarare.space>
This commit is contained in:
Tomas Volf 2025-06-24 17:52:02 +02:00 committed by Hilton Chain
parent 4d6bc7d0dc
commit 3cf2590392
No known key found for this signature in database
GPG key ID: ACC66D09CA528292

View file

@ -528,20 +528,20 @@ Release (ESR) version.")
;; Update this id with every firefox update to its release date.
;; It's used for cache validation and therefore can lead to strange bugs.
(define %firefox-build-id "20250609195321")
(define %firefox-build-id "20250623125307")
(define-public firefox
(package
(inherit firefox-esr)
(name "firefox")
(version "139.0.4")
(version "140.0")
(source
(origin
(method url-fetch)
(uri (string-append "https://archive.mozilla.org/pub/firefox/releases/"
version "/source/firefox-" version ".source.tar.xz"))
(sha256
(base32 "1xc7481g9adrn98ivqgigvdjcpkyk6sa183qvpbwcjgrqczhapjk"))
(base32 "07zxz49qj5d8h8s4w6nw9j8x7wfrw45zc3a9bny1l911kfs564pf"))
(patches
(map (lambda (patch)
(search-path