MozillaFirefox/MozillaFirefox.changes
branchmozilla-1.9.2
changeset 160 2a08bb18befb
parent 143 e110d182e5ee
child 175 d355ae17bbde
equal deleted inserted replaced
159:416b9e491c6f 160:2a08bb18befb
       
     1 -------------------------------------------------------------------
       
     2 Wed Sep 15 07:39:22 CEST 2010 - wr@rosenauer.org
       
     3 
       
     4 - update to 3.6.10
       
     5   * fixing startup topcrash (bmo#594699)
       
     6 
     1 -------------------------------------------------------------------
     7 -------------------------------------------------------------------
     2 Thu Aug 26 07:40:28 CEST 2010 - wr@rosenauer.org
     8 Thu Aug 26 07:40:28 CEST 2010 - wr@rosenauer.org
     3 
     9 
     4 - security update to 3.6.9
    10 - security update to 3.6.9 (bnc#637303)
       
    11   * MFSA 2010-49/CVE-2010-3169
       
    12     Miscellaneous memory safety hazards
       
    13   * MFSA 2010-50/CVE-2010-2765 (bmo#576447)
       
    14     Frameset integer overflow vulnerability
       
    15   * MFSA 2010-51/CVE-2010-2767 (bmo#584512)
       
    16     Dangling pointer vulnerability using DOM plugin array
       
    17   * MFSA 2010-53/CVE-2010-3166 (bmo#579655)
       
    18     Heap buffer overflow in nsTextFrameUtils::TransformText
       
    19   * MFSA 2010-54/CVE-2010-2760 (bmo#585815)
       
    20     Dangling pointer vulnerability in nsTreeSelection
       
    21   * MFSA 2010-55/CVE-2010-3168 (bmo#576075)
       
    22     XUL tree removal crash and remote code execution
       
    23   * MFSA 2010-56/CVE-2010-3167 (bmo#576070)
       
    24     Dangling pointer vulnerability in nsTreeContentView
       
    25   * MFSA 2010-57/CVE-2010-2766 (bmo#580445)
       
    26     Crash and remote code execution in normalizeDocument
       
    27   * MFSA 2010-59/CVE-2010-2762 (bmo#584180)
       
    28     SJOW creates scope chains ending in outer object
       
    29   * MFSA 2010-61/CVE-2010-2768 (bmo#579744)
       
    30     UTF-7 XSS by overriding document charset using <object> type
       
    31     attribute
       
    32   * MFSA 2010-62/CVE-2010-2769 (bmo#520189)
       
    33     Copy-and-paste or drag-and-drop into designMode document allows
       
    34     XSS
       
    35   * MFSA 2010-63/CVE-2010-2764 (bmo#552090)
       
    36     Information leak via XMLHttpRequest statusText
     5 
    37 
     6 -------------------------------------------------------------------
    38 -------------------------------------------------------------------
     7 Wed Jul 28 08:33:14 CEST 2010 - meissner@suse.de
    39 Wed Jul 28 08:33:14 CEST 2010 - meissner@suse.de
     8 
    40 
     9 - disable crash reporter for non x86/x86_64 to make it build.
    41 - disable crash reporter for non x86/x86_64 to make it build.