MozillaFirefox/MozillaFirefox.changes
branchfirefox17
changeset 562 9069817b5cac
parent 547 65364282c9bc
child 564 9852e10fdf9b
equal deleted inserted replaced
556:a30fcfcd2e53 562:9069817b5cac
     1 -------------------------------------------------------------------
     1 -------------------------------------------------------------------
     2 Thu Oct  4 04:51:23 UTC 2012 - wr@rosenauer.org
     2 Mon Oct 15 14:07:12 UTC 2012 - wr@rosenauer.org
     3 
     3 
     4 - update to Aurora 17 (20121003)
     4 - update to Firefox 17.0b1
     5 - use internal NSPR for now (bmo#776877)
     5 - use internal NSPR for now (bmo#776877)
     6 
     6 
     7 -------------------------------------------------------------------
     7 -------------------------------------------------------------------
     8 Thu Sep 27 18:20:18 UTC 2012 - wr@rosenauer.org
     8 Thu Oct 11 01:51:16 UTC 2012 - wr@rosenauer.org
     9 
     9 
    10 - update to Firefox 16.0b5
    10 - update to Firefox 16.0.1 (bnc#783533)
       
    11   * MFSA 2012-88/CVE-2012-4191 (bmo#798045)
       
    12     Miscellaneous memory safety hazards
       
    13   * MFSA 2012-89/CVE-2012-4192/CVE-2012-4193 (bmo#799952, bmo#720619)
       
    14     defaultValue security checks not applied
       
    15 
       
    16 -------------------------------------------------------------------
       
    17 Sun Oct  7 21:40:14 UTC 2012 - wr@rosenauer.org
       
    18 
       
    19 - update to Firefox 16.0 (bnc#783533)
       
    20   * MFSA 2012-74/CVE-2012-3982/CVE-2012-3983
       
    21     Miscellaneous memory safety hazards
       
    22   * MFSA 2012-75/CVE-2012-3984 (bmo#575294)
       
    23     select element persistance allows for attacks
       
    24   * MFSA 2012-76/CVE-2012-3985 (bmo#655649)
       
    25     Continued access to initial origin after setting document.domain
       
    26   * MFSA 2012-77/CVE-2012-3986 (bmo#775868)
       
    27     Some DOMWindowUtils methods bypass security checks
       
    28   * MFSA 2012-79/CVE-2012-3988 (bmo#725770)
       
    29     DOS and crash with full screen and history navigation
       
    30   * MFSA 2012-80/CVE-2012-3989 (bmo#783867)
       
    31     Crash with invalid cast when using instanceof operator
       
    32   * MFSA 2012-81/CVE-2012-3991 (bmo#783260)
       
    33     GetProperty function can bypass security checks
       
    34   * MFSA 2012-82/CVE-2012-3994 (bmo#765527)
       
    35     top object and location property accessible by plugins
       
    36   * MFSA 2012-83/CVE-2012-3993/CVE-2012-4184 (bmo#768101, bmo#780370)
       
    37     Chrome Object Wrapper (COW) does not disallow acces to privileged
       
    38     functions or properties
       
    39   * MFSA 2012-84/CVE-2012-3992 (bmo#775009)
       
    40     Spoofing and script injection through location.hash
       
    41   * MFSA 2012-85/CVE-2012-3995/CVE-2012-4179/CVE-2012-4180/
       
    42     CVE-2012-4181/CVE-2012-4182/CVE-2012-4183
       
    43     Use-after-free, buffer overflow, and out of bounds read issues
       
    44     found using Address Sanitizer
       
    45   * MFSA 2012-86/CVE-2012-4185/CVE-2012-4186/CVE-2012-4187/
       
    46     CVE-2012-4188
       
    47     Heap memory corruption issues found using Address Sanitizer
       
    48   * MFSA 2012-87/CVE-2012-3990 (bmo#787704)
       
    49     Use-after-free in the IME State Manager
    11 - requires NSPR 4.9.2
    50 - requires NSPR 4.9.2
    12 - improve GStreamer integration (bmo#760140)
    51 - improve GStreamer integration (bmo#760140)
    13 - removed upstreamed mozilla-crashreporter-restart-args.patch
    52 - removed upstreamed mozilla-crashreporter-restart-args.patch
    14 - webapprt now included
    53 - webapprt now included
    15 - use kmozillahelper's new REVEAL command (bnc#777415)
    54 - use kmozillahelper's new REVEAL command (bnc#777415)
    16   (requires mozilla-kde4-integration >= 0.6.4)
    55   (requires mozilla-kde4-integration >= 0.6.4)
       
    56 - updated translations-other with new languages
    17 
    57 
    18 -------------------------------------------------------------------
    58 -------------------------------------------------------------------
    19 Mon Sep 10 19:37:56 UTC 2012 - wr@rosenauer.org
    59 Mon Sep 10 19:37:56 UTC 2012 - wr@rosenauer.org
    20 
    60 
    21 - update to Firefox 15.0.1 (bnc#779936)
    61 - update to Firefox 15.0.1 (bnc#779936)