|
1 ------------------------------------------------------------------- |
|
2 Wed Sep 15 07:39:22 CEST 2010 - wr@rosenauer.org |
|
3 |
|
4 - update to 3.6.10 |
|
5 * fixing startup topcrash (bmo#594699) |
|
6 |
1 ------------------------------------------------------------------- |
7 ------------------------------------------------------------------- |
2 Thu Aug 26 07:40:28 CEST 2010 - wr@rosenauer.org |
8 Thu Aug 26 07:40:28 CEST 2010 - wr@rosenauer.org |
3 |
9 |
4 - security update to 3.6.9 |
10 - security update to 3.6.9 (bnc#637303) |
|
11 * MFSA 2010-49/CVE-2010-3169 |
|
12 Miscellaneous memory safety hazards |
|
13 * MFSA 2010-50/CVE-2010-2765 (bmo#576447) |
|
14 Frameset integer overflow vulnerability |
|
15 * MFSA 2010-51/CVE-2010-2767 (bmo#584512) |
|
16 Dangling pointer vulnerability using DOM plugin array |
|
17 * MFSA 2010-53/CVE-2010-3166 (bmo#579655) |
|
18 Heap buffer overflow in nsTextFrameUtils::TransformText |
|
19 * MFSA 2010-54/CVE-2010-2760 (bmo#585815) |
|
20 Dangling pointer vulnerability in nsTreeSelection |
|
21 * MFSA 2010-55/CVE-2010-3168 (bmo#576075) |
|
22 XUL tree removal crash and remote code execution |
|
23 * MFSA 2010-56/CVE-2010-3167 (bmo#576070) |
|
24 Dangling pointer vulnerability in nsTreeContentView |
|
25 * MFSA 2010-57/CVE-2010-2766 (bmo#580445) |
|
26 Crash and remote code execution in normalizeDocument |
|
27 * MFSA 2010-59/CVE-2010-2762 (bmo#584180) |
|
28 SJOW creates scope chains ending in outer object |
|
29 * MFSA 2010-61/CVE-2010-2768 (bmo#579744) |
|
30 UTF-7 XSS by overriding document charset using <object> type |
|
31 attribute |
|
32 * MFSA 2010-62/CVE-2010-2769 (bmo#520189) |
|
33 Copy-and-paste or drag-and-drop into designMode document allows |
|
34 XSS |
|
35 * MFSA 2010-63/CVE-2010-2764 (bmo#552090) |
|
36 Information leak via XMLHttpRequest statusText |
5 |
37 |
6 ------------------------------------------------------------------- |
38 ------------------------------------------------------------------- |
7 Wed Jul 28 08:33:14 CEST 2010 - meissner@suse.de |
39 Wed Jul 28 08:33:14 CEST 2010 - meissner@suse.de |
8 |
40 |
9 - disable crash reporter for non x86/x86_64 to make it build. |
41 - disable crash reporter for non x86/x86_64 to make it build. |