MozillaFirefox/firefox-esr.changes
branchfirefox91
changeset 1167 7852ceef239b
parent 1162 af5e283c2e5d
equal deleted inserted replaced
1162:af5e283c2e5d 1167:7852ceef239b
       
     1 -------------------------------------------------------------------
       
     2 Tue Oct  5 13:16:17 UTC 2021 - Wolfgang Rosenauer <wr@rosenauer.org>
       
     3 
       
     4 - Mozilla Firefox 91.2.0 ESR
       
     5   MFSA 2021-45 (bsc#1191332)
       
     6   * CVE-2021-38496 (bmo#1725335)
       
     7     Use-after-free in MessageTask
       
     8   * CVE-2021-38497 (bmo#1726621)
       
     9     Validation message could have been overlaid on another origin
       
    10   * CVE-2021-38498 (bmo#1729642)
       
    11     Use-after-free of nsLanguageAtomService object
       
    12   * CVE-2021-32810 (bmo#1729813,
       
    13     bmo#https://github.com/crossbeam-
       
    14     rs/crossbeam/security/advisories/GHSA-pqqp-xmhj-wgcw)
       
    15     Data race in crossbeam-deque
       
    16   * CVE-2021-38500 (bmo#1725854, bmo#1728321)
       
    17     Memory safety bugs fixed in Firefox 93, Firefox ESR 78.15,
       
    18     and Firefox ESR 91.2
       
    19   * CVE-2021-38501 (bmo#1685354, bmo#1715755, bmo#1723176)
       
    20     Memory safety bugs fixed in Firefox 93 and Firefox ESR 91.2
       
    21 - allow to override wayland detection by defining MOZ_ENABLE_WAYLAND
       
    22   explicitely as 0 or 1
       
    23 
     1 -------------------------------------------------------------------
    24 -------------------------------------------------------------------
     2 Fri Sep  3 11:12:18 UTC 2021 - Wolfgang Rosenauer <wr@rosenauer.org>
    25 Fri Sep  3 11:12:18 UTC 2021 - Wolfgang Rosenauer <wr@rosenauer.org>
     3 
    26 
     4 - Mozilla Firefox 91.1.0 ESR
    27 - Mozilla Firefox 91.1.0 ESR
       
    28   MFSA 2021-40 (bsc#1190269)
       
    29   * CVE-2021-38492 (bmo#1721107)
       
    30     Navigating to `mk:` URL scheme could load Internet Explorer
       
    31   * CVE-2021-38495 (bmo#1723391, bmo#1723920, bmo#1724101, bmo#1724107)
       
    32     Memory safety bugs fixed in Firefox 92, Firefox ESR 78.14 and
       
    33     Firefox ESR 91.1
     5 - switched to ESR branch and renamed package accordingly
    34 - switched to ESR branch and renamed package accordingly
     6 - updated appdata
    35 - updated appdata
     7 - don't apply mozilla-disable-wasm-emulate-arm-unaligned-fp-access.patch
    36 - don't apply mozilla-disable-wasm-emulate-arm-unaligned-fp-access.patch
     8 - bring back mozilla-silence-no-return-type.patch and
    37 - bring back mozilla-silence-no-return-type.patch and
     9   run post-build-checks everywhere again
    38   run post-build-checks everywhere again