MozillaFirefox/firefox-esr.changes
branchesr24
changeset 743 d43937f702f4
parent 729 aa4b2ebc0785
child 752 2865fe16fead
--- a/MozillaFirefox/firefox-esr.changes	Tue Apr 29 23:40:58 2014 +0200
+++ b/MozillaFirefox/firefox-esr.changes	Thu Jun 12 00:02:30 2014 +0200
@@ -1,4 +1,25 @@
 -------------------------------------------------------------------
+Sat Jun  7 06:45:33 UTC 2014 - wr@rosenauer.org
+
+- update to Firefox 24.6.0 (bnc#881874)
+  * MFSA 2014-48/CVE-2014-1533/CVE-2014-1534
+    (bmo#921622, bmo#967354, bmo#969517, bmo#969549, bmo#973874,
+     bmo#978652, bmo#978811, bmo#988719, bmo#990868, bmo#991981,
+     bmo#992274, bmo#994907, bmo#995679, bmo#995816, bmo#995817,
+     bmo#996536, bmo#996715, bmo#999651, bmo#1000598,
+     bmo#1000960, bmo#1002340, bmo#1005578, bmo#1007223,
+     bmo#1009952, bmo#1011007)
+    Miscellaneous memory safety hazards (rv:30.0 / rv:24.6)
+  * MFSA 2014-49/CVE-2014-1536/CVE-2014-1537/CVE-2014-1538
+    (bmo#989994, bmo#999274, bmo#1005584)
+    Use-after-free and out of bounds issues found using Address Sanitizer
+  * MFSA 2014-52/CVE-2014-1541 (bmo#1000185)
+    Use-after-free with SMIL Animation Controller
+  * MFSA 2014-55/CVE-2014-1545 (bmo#1018783)
+    Out of bounds write in NSPR
+- require NSPR 4.10.6 because of MFSA 2014-55/CVE-2014-1545
+
+-------------------------------------------------------------------
 Fri Apr 25 08:25:17 UTC 2014 - wr@rosenauer.org
 
 - update to Firefox 24.5.0 (bnc#875378)