Skip to content

⛐ It's the "fifty-two CVEs, nineteen of them serious" release!

Choose a tag to compare

@SyntaxError-PEBKAC SyntaxError-PEBKAC released this 21 Aug 23:48
· 15 commits to main since this release
153.1.0

🔄 Updated to Firefox ESR 153.1.0.

🗑️ Removed the now-unused tools/upx-after-package.ps1 script.

🗓️ Fixed a stale date in the PGO training corpus metadata.

⚙️ Fixed incorrect wording on the "More from Mozilla" settings page.

🏷️ Data reporting notice now correctly refers to Mozilla as "they", not ducksteps as "we".

📡 Telemetry prompts now correctly name Mozilla as the data recipient, not the maintainer.

🛡️ Addressed 52 CVEs from Mozilla Foundation Security Advisory 2026-77 (August 18, 2026). This one's mostly patching holes; 19 high, 23 moderate, and 10 low severity CVEs squashed, nothing screaming louder than the rest but the high count alone is enough to not sit on this. Update when you get a sec.


✅ SHA512:

ducksteps.153.1.0.AVX512.Setup.exe
e08693e40c1aa4d9cf4f626fcd840b79fadd91ddd5e1ea6925ad1b90134699791fc10eae19594ebfbfa0c9b007561523b8e46741135b0b8d4083aae094c014b2

ducksteps.153.1.0.AVX512.Standalone.7z
381212d8aa4dcc3b23faf7a4def0a6735bdfa68c5aa0260f4a07285cc457e24c46227ba02b93d6316e3d3882dffea0ac3dd89ac6e6970bad52707b8f59eb8ed6

ducksteps.153.1.0.Legacy.Setup.exe
bd7b22623dfd7c2c59d7abac832b45497f8912dd770d7a40dde4cf9e65af168d6ce702a2a38efbb4992c9d507db3197b841efae480fbc60a3332048b6bc8d797

ducksteps.153.1.0.Legacy.Standalone.7z
1023a3300affc1c475ed431afef3d5f864a150506e5fdb78d25eca55d96f4540ba382081ac94abb189f2fa88999aa662815aadb859464e6433b478e163e0f097


🚨 VirusTotal Results:

ducksteps.153.1.0.AVX512.Setup.exe

ducksteps.153.1.0.AVX512.Standalone.7z

ducksteps.153.1.0.Legacy.Setup.exe

ducksteps.153.1.0.Legacy.Standalone.7z