xulrunner/xulrunner-esr.changes
branchesr10
changeset 580 16718027c329
parent 570 bcc669f726e5
child 597 09090b64646a
--- a/xulrunner/xulrunner-esr.changes	Fri Oct 26 23:25:51 2012 +0200
+++ b/xulrunner/xulrunner-esr.changes	Wed Nov 21 00:03:27 2012 +0100
@@ -1,3 +1,30 @@
+-------------------------------------------------------------------
+Tue Nov 20 20:48:04 UTC 2012 - wr@rosenauer.org
+
+- update to 10.0.11esr (bnc#790140)
+  * MFSA 2012-91/CVE-2012-5842/CVE-2012-5843
+    Miscellaneous memory safety hazards
+  * MFSA 2012-92/CVE-2012-4202 (bmo#758200)
+    Buffer overflow while rendering GIF images
+  * MFSA 2012-93/CVE-2012-4201 (bmo#747607)
+    evalInSanbox location context incorrectly applied
+  * MFSA 2012-100/CVE-2012-5841 (bmo#805807)
+    Improper security filtering for cross-origin wrappers
+  * MFSA 2012-101/CVE-2012-4207 (bmo#801681)
+    Improper character decoding in HZ-GB-2312 charset
+  * MFSA 2012-103/CVE-2012-4209 (bmo#792405)
+    Frames can shadow top.location
+  * MFSA 2012-104/CVE-2012-4210 (bmo#796866)
+    CSS and HTML injection through Style Inspector
+  * MFSA 2012-105/CVE-2012-4214/CVE-2012-4215/CVE-2012-4216/
+    CVE-2012-5829/CVE-2012-5839/CVE-2012-5840/CVE-2012-4212/
+    CVE-2012-4213/CVE-2012-4217/CVE-2012-4218
+    Use-after-free and buffer overflow issues found using Address
+    Sanitizer
+  * MFSA 2012-106/CVE-2012-5830/CVE-2012-5833/CVE-2012-5835/CVE-2012-5838
+    Use-after-free, buffer overflow, and memory corruption issues
+    found using Address Sanitizer
+
 -------------------------------------------------------------------
 Thu Oct 25 08:03:09 UTC 2012 - wr@rosenauer.org