Googles OSS-Fuzz revealed an exploitable bug in the gmp plugin caused by thepatch that fixes CVE-2018-16151 and CVE-2018-16151 (DSA-4305-1).
More info:
https://www.debian.org/security/2018/dsa-4309
The HTTP Referrer Value Navigating from one webpage to another or requesting a sub-resource within a webpage causes a web browser to send the top-level URL in the HTTP referrer field. Inspecting that HTTP header field on the receiving end … Continue readingThe post Supporting Referrer Policy for CSS in Firefox 64 appeared first on Mozilla Security Blog.
More info:
https://blog.mozilla.org/security/2018/10/02/supporting-referrer-policy-for-css-in-firefox-64/