xulrunner/xulrunner.changes
branchfirefox31
changeset 848 a001af1b1593
parent 834 09609abbb55f
child 849 166e8fd94cec
equal deleted inserted replaced
834:09609abbb55f 848:a001af1b1593
       
     1 -------------------------------------------------------------------
       
     2 Mon Mar 30 07:56:19 UTC 2015 - wr@rosenauer.org
       
     3 
       
     4 - update to 31.6.0 (bnc#925368)
       
     5   * MFSA 2015-30/CVE-2015-0815
       
     6     Miscellaneous memory safety hazards
       
     7   * MFSA 2015-31/CVE-2015-0813 (bmo#1106596))
       
     8     Use-after-free when using the Fluendo MP3 GStreamer plugin
       
     9   * MFSA 2015-33/CVE-2015-0816 (bmo#1144991)
       
    10     resource:// documents can load privileged pages
       
    11   * MFSA-2015-37/CVE-2015-0807 (bmo#1111834)
       
    12     CORS requests should not follow 30x redirections after preflight
       
    13   * MFSA-2015-40/CVE-2015-0801 (bmo#1146339)
       
    14     Same-origin bypass through anchor navigation
       
    15 
     1 -------------------------------------------------------------------
    16 -------------------------------------------------------------------
     2 Thu Feb 19 22:56:55 UTC 2015 - wr@rosenauer.org
    17 Thu Feb 19 22:56:55 UTC 2015 - wr@rosenauer.org
     3 
    18 
     4 - update to 31.5.0 (bnc#917597)
    19 - update to 31.5.0 (bnc#917597)
       
    20   * MFSA 2015-11/CVE-2015-0836
       
    21     Miscellaneous memory safety hazards
       
    22   * MFSA 2015-12/CVE-2015-0833 (bmo#945192)
       
    23     Invoking Mozilla updater will load locally stored DLL files
       
    24     (Windows only)
       
    25   * MFSA 2015-16/CVE-2015-0831 (bmo#1130514)
       
    26     Use-after-free in IndexedDB
       
    27   * MFSA 2015-19/CVE-2015-0827 (bmo#1117304)
       
    28     Out-of-bounds read and write while rendering SVG content
       
    29   * MFSA 2015-24/CVE-2015-0822 (bmo#1110557)
       
    30     Reading of local files through manipulation of form autocomplete
     5 
    31 
     6 -------------------------------------------------------------------
    32 -------------------------------------------------------------------
     7 Sat Jan 10 17:33:51 UTC 2015 - wr@rosenauer.org
    33 Sat Jan 10 17:33:51 UTC 2015 - wr@rosenauer.org
     8 
    34 
     9 - update to 31.4.0 (bnc#910669)
    35 - update to 31.4.0 (bnc#910669)