MozillaFirefox/MozillaFirefox.changes
branchfirefox104
changeset 1178 e27c6e9c5c63
parent 1177 4bb6d80fcc64
child 1179 c19c9e7820ef
--- a/MozillaFirefox/MozillaFirefox.changes	Sun Aug 21 12:40:43 2022 +0200
+++ b/MozillaFirefox/MozillaFirefox.changes	Sat Sep 17 23:09:48 2022 +0200
@@ -1,4 +1,56 @@
 -------------------------------------------------------------------
+Fri Sep  9 05:59:03 UTC 2022 - Guillaume GARDET <guillaume.gardet@opensuse.org>
+
+- Adjust memory requirements to fix build on aarch64
+
+-------------------------------------------------------------------
+Wed Sep  7 06:50:24 UTC 2022 - Wolfgang Rosenauer <wr@rosenauer.org>
+
+- Mozilla Firefox 104.0.2 (boo#1203177)
+  https://www.mozilla.org/en-US/firefox/104.0.2/releasenotes/
+  * Fixed a bug making it impossible to use touch or a stylus to
+    drag the scrollbar on pages (bmo#1787361)
+  * Fixed an issue causing some users to crash in out-of-memory
+    conditions (bmo#1774155)
+  * Fixed an issue that would sometimes affect video & audio playback
+    when loaded via a cross-origin iframe src attribute (bmo#1781759)
+  * Fixed an issue that would sometimes affect video & audio playback
+    when served with Content-Security-Policy: sandbox (bmo#1781063)
+
+-------------------------------------------------------------------
+Thu Sep  1 07:04:11 UTC 2022 - Wolfgang Rosenauer <wr@rosenauer.org>
+
+- Mozilla Firefox 104.0.1
+  * Addresses an issue with Youtube video playback that was
+    affecting some users (boo#1203003)
+
+-------------------------------------------------------------------
+Sun Aug 21 11:12:14 UTC 2022 - Wolfgang Rosenauer <wr@rosenauer.org>
+
+- Mozilla Firefox 104.0
+  * https://www.mozilla.org/en-US/firefox/104.0/releasenotes
+  MFSA 2022-33 (bsc#1202645)
+  * CVE-2022-38472 (bmo#1769155)
+    Address bar spoofing via XSLT error handling
+  * CVE-2022-38473 (bmo#1771685)
+    Cross-origin XSLT Documents would have inherited the parent's
+    permissions
+  * CVE-2022-38474 (bmo#1719511)
+    Recording notification not shown when microphone was
+    recording on Android
+  * CVE-2022-38475 (bmo#1773266)
+    Attacker could write a value to a zero-length array
+  * CVE-2022-38477 (bmo#1760611, bmo#1770219, bmo#1771159, bmo#1773363)
+    Memory safety bugs fixed in Firefox 104 and Firefox ESR 102.2
+  * CVE-2022-38478 (bmo#1770630, bmo#1776658)
+    Memory safety bugs fixed in Firefox 104, Firefox ESR 102.2,
+    and Firefox ESR 91.13
+- requires
+  NSPR 4.34.1
+  NSS 3.81
+  rust 1.62
+
+-------------------------------------------------------------------
 Sat Aug 13 06:25:20 UTC 2022 - Wolfgang Rosenauer <wr@rosenauer.org>
 
 - added mozilla-glibc236.patch (bmo#1782988, boo#1202323)