# HG changeset patch # User Wolfgang Rosenauer # Date 1484953019 -3600 # Node ID 9ae2b79d3bb1063539ce83c91e4fc68d6e6b47d9 # Parent b61e849fe4517459c0a6ee937f3e4467555d2824 prepare FF 51 -> 51.0b14 diff -r b61e849fe451 -r 9ae2b79d3bb1 MozillaFirefox/MozillaFirefox.changes --- a/MozillaFirefox/MozillaFirefox.changes Wed Jan 18 22:06:23 2017 +0100 +++ b/MozillaFirefox/MozillaFirefox.changes Fri Jan 20 23:56:59 2017 +0100 @@ -1,7 +1,37 @@ ------------------------------------------------------------------- +Fri Jan 20 13:57:56 UTC 2017 - wr@rosenauer.org + +- update to Firefox 51.0b14 (boo#) + * requires NSPR >= 4.13.1, NSS >= 3.28.1 +- removed obsolete patches + * mozilla-flex_buffer_overrun.patch + +------------------------------------------------------------------- Mon Dec 12 21:18:41 UTC 2016 - wr@rosenauer.org -- update to Firefox 50.1.0 (boo#) +- update to Firefox 50.1.0 (boo#1015422) + * MFSA 2016-94 + CVE-2016-9894: Buffer overflow in SkiaGL (bmo#1306628) + CVE-2016-9899: Use-after-free while manipulating DOM events and + audio elements (bmo#1317409) + CVE-2016-9895: CSP bypass using marquee tag (bmo#1312272) + CVE-2016-9896: Use-after-free with WebVR (bmo#1315543) + CVE-2016-9897: Memory corruption in libGLES (bmo#1301381) + CVE-2016-9898: Use-after-free in Editor while manipulating + DOM subtrees (bmo#1314442) + CVE-2016-9900: Restricted external resources can be loaded by + SVG images through data URLs (bmo#1319122) + CVE-2016-9904: Cross-origin information leak in shared atoms + (bmo#1317936) + CVE-2016-9901: Data from Pocket server improperly sanitized + before execution (bmo#1320057) + CVE-2016-9902: Pocket extension does not validate the origin + of events (bmo#1320039) + CVE-2016-9903: XSS injection vulnerability in add-ons SDK + (bmo#1315435) + CVE-2016-9080: Memory safety bugs fixed in Firefox 50.1 + CVE-2016-9893: Memory safety bugs fixed in Firefox 50.1 and + Firefox ESR 45.6 ------------------------------------------------------------------- Fri Dec 9 17:57:22 UTC 2016 - cgrobertson@novell.com diff -r b61e849fe451 -r 9ae2b79d3bb1 MozillaFirefox/MozillaFirefox.spec --- a/MozillaFirefox/MozillaFirefox.spec Wed Jan 18 22:06:23 2017 +0100 +++ b/MozillaFirefox/MozillaFirefox.spec Fri Jan 20 23:56:59 2017 +0100 @@ -19,9 +19,9 @@ # changed with every update %define major 50 -%define mainver %major.1.0 -%define update_channel release -%define releasedate 20161212000000 +%define mainver %major.99 +%define update_channel beta +%define releasedate 20170117000000 # PIE, full relro (x86_64 for now) %define build_hardened 1 @@ -74,8 +74,8 @@ BuildRequires: libnotify-devel BuildRequires: libproxy-devel BuildRequires: makeinfo -BuildRequires: mozilla-nspr-devel >= 4.12 -BuildRequires: mozilla-nss-devel >= 3.26.2 +BuildRequires: mozilla-nspr-devel >= 4.13.1 +BuildRequires: mozilla-nss-devel >= 3.28.1 BuildRequires: nss-shared-helper-devel BuildRequires: python-devel BuildRequires: startup-notification-devel @@ -152,7 +152,6 @@ Patch102: firefox-no-default-ualocale.patch Patch103: firefox-branded-icons.patch # hotfix -Patch150: mozilla-flex_buffer_overrun.patch Patch200: mozilla-aarch64-startup-crash.patch BuildRoot: %{_tmppath}/%{name}-%{version}-build @@ -266,7 +265,6 @@ %patch101 -p1 %patch102 -p1 %patch103 -p1 -%patch150 -p1 %patch200 -p1 %build diff -r b61e849fe451 -r 9ae2b79d3bb1 MozillaFirefox/create-tar.sh --- a/MozillaFirefox/create-tar.sh Wed Jan 18 22:06:23 2017 +0100 +++ b/MozillaFirefox/create-tar.sh Fri Jan 20 23:56:59 2017 +0100 @@ -5,10 +5,10 @@ # "moz_source_stamp": "c1de04f39fa956cfce83f6065b0e709369215ed5" # http://ftp.mozilla.org/pub/firefox/candidates/48.0-candidates/build2/l10n_changesets.txt -CHANNEL="release" +CHANNEL="beta" BRANCH="releases/mozilla-$CHANNEL" -RELEASE_TAG="8612c3320053b796678921f8f23358e3e9df997e" -VERSION="50.1.0" +RELEASE_TAG="FIREFOX_51_0b14_RELEASE" +VERSION="50.99" # mozilla if [ -d mozilla ]; then diff -r b61e849fe451 -r 9ae2b79d3bb1 MozillaFirefox/l10n_changesets.txt --- a/MozillaFirefox/l10n_changesets.txt Wed Jan 18 22:06:23 2017 +0100 +++ b/MozillaFirefox/l10n_changesets.txt Fri Jan 20 23:56:59 2017 +0100 @@ -1,92 +1,93 @@ -ach 72c548f97e82 -af 676daf929ded -an 9c672ba38dae -ar 6bd1cb920a48 -as 9710b1ce7a29 -ast 5a06502c9fc1 -az f12bc2c29510 -be 3c6fd4559f7f -bg 7843a5e79d32 -bn-BD 3cbe5cfb0859 -bn-IN 578eacdbac9d -br a16ed131653a -bs 3425b8fcf1ab -ca c6b4f835d64e -cak 710c1faa7291 -cs e1f114f9588d -cy 07118becc133 -da fbec55bbfd36 -de 20748e20ccf2 -dsb 4b8493859a20 -el 16fdb46a6a47 -en-GB e7242fb885cf -en-ZA 118b4d922a17 -eo ae85ceef76b2 -es-AR a18a4b85f35f -es-CL c5ff11d180da -es-ES e841d9340b7c -es-MX 2eaf1f216766 -et 8920752eaf5b -eu eb3cb2d122eb -fa e481522b74f8 -ff 88f5cd66688d -fi b20587491f77 -fr 628920fcb9f1 -fy-NL 56f04c122d2a -ga-IE ffbfd52e15d6 -gd 9f50ee991ed8 -gl e15306f877bf -gn 68f844f4138a -gu-IN 54ac9d906390 -he 7c087889358a -hi-IN aea1bb23685c -hr b0cc9aa34502 -hsb d7ea2d9d91ea -hu 5106349d21dd -hy-AM 3f5103ed23e2 -id 69b0d5120660 -is 8b6a14ea919f -it ec06674eebb4 -ja 488fbb4070d9 -ja-JP-mac e120b04c4a90 -kk 60c09b46e90d -km 00277d0045d3 -kn 0aff09069416 -ko 33cf1dd48c33 -lij 6a94ea30eef6 -lt 15947ce6f7ff -lv 3a43a0e2c12c -mai b43ac46bf163 -mk 0f98fd626df2 -ml b6b5a2b26a09 -mr 0c2a798af2d9 -ms a0a74230784a -nb-NO 378c5b201531 -nl 750fcda42314 -nn-NO 444e256b7ed8 -or 5ac88ef59ea5 -pa-IN ab02b30c28ea -pl cd84bd057189 -pt-BR dc5c8b030a57 -pt-PT 900fd62886bb -rm b6416ed6a3a1 -ro 2e2e9b5a07f5 -ru 1d962dfc279e -si 03a3b09a2203 -sk 4e8311d1d017 -sl b43e8e65c00e -son 544d3eea9a59 -sq 25e86afe807e -sr 233c45e5d423 -sv-SE 6b9266a60638 -ta 0256c1b190ce -te 8565fd8f778a -th e2b0b5a2dc9c -tr 255e7e613fca -uk e36fe69f4a3f -uz 6d46754186ab -vi 5c32df50f35d -xh c96bc753a170 -zh-CN 411faa039900 -zh-TW e1416ff1b4d6 +ach d6ba00c5c59a +af 221acbf9c551 +an efef89681add +ar 940e066d2dd8 +as a97311f0a051 +ast 37ff5970cc8f +az 374715191cd0 +bg d15a763f746a +bn-BD b4cdbb48d9fb +bn-IN 405c89530a66 +br e730984a8770 +bs e25f083ed28a +ca 2909feec9b62 +cak b0fe49f697f3 +cs 53096821fe5c +cy 4690316110e9 +da 24845323c326 +de ec96b812a542 +dsb 8e338605ccb9 +el 34a3488407a6 +en-GB 8000aa9daf28 +en-ZA ad5be8ba60f3 +eo 3a024766912e +es-AR 541f1c3690da +es-CL 56477941664e +es-ES 8b7162b69b09 +es-MX 77bc335e0853 +et a9b1775874d3 +eu 52ec58e99375 +fa 95d8b781e109 +ff 2e39572916fb +fi 94ad306d1492 +fr 27c4dc4cba4d +fy-NL 9399c11d5edb +ga-IE 5d9852283915 +gd bc702e34726b +gl 74d31ad43213 +gn 43e8b6cb5fc6 +gu-IN 97b7ec458ace +he 32e85d63d323 +hi-IN 25c7d3fceff8 +hr 15e2ad66589c +hsb ff5fb215596d +hu 814fad9068d9 +hy-AM 339e5b6d31d2 +id 1f325ac9007c +is e346cec6bace +it fc766adb485d +ja 78a60bf924e7 +ja-JP-mac 0ca52430f89c +ka fb0e9f4fdbe7 +kab 3de51a9c61ce +kk 368faf9a9ed3 +km 97cd3bb4f2f3 +kn f657dd18d8a1 +ko bc9fde5af704 +lij 500f328a0bf0 +lt 3eefea021768 +lv 90a827f08cb4 +mai 4a95441f376c +mk 666cf4d8067b +ml 1f2e734fbd60 +mr 8067689c39f3 +ms 76c4152f9e3f +nb-NO 1effc4c0ba39 +nl 28f169daa01f +nn-NO 272d7d7fbd67 +or 765fc4b06ed0 +pa-IN 8518db59aecf +pl 339f79766251 +pt-BR 3e521cc717b9 +pt-PT 5ea4fd22db27 +rm 66840279c384 +ro a87554f9bf7e +ru a8f0bc1f85db +si 2629b7b1279c +sk b78499013196 +sl b91f9bd2d619 +son 2934d6741b1a +sq 8ff97a87cbeb +sr 8ddd91c5629b +sv-SE 483944f0c102 +ta dc89744a2281 +te 545bca10223a +th 6076f69e7093 +tr 70129fabcb60 +uk cb0a4b0816fa +uz 01402c615783 +vi d6c09226896e +xh f587b401f8fc +zh-CN d260be15e967 +zh-TW 267404478cf9 diff -r b61e849fe451 -r 9ae2b79d3bb1 MozillaFirefox/mozilla-flex_buffer_overrun.patch --- a/MozillaFirefox/mozilla-flex_buffer_overrun.patch Wed Jan 18 22:06:23 2017 +0100 +++ /dev/null Thu Jan 01 00:00:00 1970 +0000 @@ -1,1 +0,0 @@ -../mozilla-flex_buffer_overrun.patch \ No newline at end of file diff -r b61e849fe451 -r 9ae2b79d3bb1 firefox-kde.patch --- a/firefox-kde.patch Wed Jan 18 22:06:23 2017 +0100 +++ b/firefox-kde.patch Fri Jan 20 23:56:59 2017 +0100 @@ -1,11 +1,11 @@ # HG changeset patch -# Parent 2cb2f829aabd7e3efaa973a0a8cf99aca9605bdc +# Parent 2cae514c05c8836ca5b69884d3a07998a5d53e8b diff --git a/browser/base/content/browser-kde.xul b/browser/base/content/browser-kde.xul new file mode 100644 --- /dev/null +++ b/browser/base/content/browser-kde.xul -@@ -0,0 +1,1200 @@ +@@ -0,0 +1,1119 @@ +#filter substitution + +# -*- Mode: HTML -*- @@ -160,14 +160,7 @@ + noautofocus="true" + hidden="true" + flip="none" -+ level="parent"> -+#ifdef NIGHTLY_BUILD -+ -+