Path to this page:
Subject: CVS commit: [pkgsrc-2008Q2] pkgsrc/www
From: Matthias Scheler
Date: 2008-09-26 21:52:40
Message id: 20080926195240.BDBC4175D0@cvs.netbsd.org
Log Message:
Pullup ticket #2534 - requested by ghen
firefox: security update
firefox-bin: security update
firefox-gtk1: security update
www/firefox-bin/Makefile 1.45
www/firefox-bin/distinfo 1.45
www/firefox-gtk1/Makefile 1.20-1.21
www/firefox-gtk1/PLIST 1.16
www/firefox/Makefile 1.47-1.48
www/firefox/Makefile-firefox.common 1.60
www/firefox/PLIST 1.31
www/firefox/distinfo 1.81-1.82
www/firefox/patches/patch-ee 1.1
www/firefox/patches/patch-ef 1.1
www/firefox/patches/patch-eg 1.1
---
Module Name: pkgsrc
Committed By: martin
Date: Mon Aug 11 10:09:21 UTC 2008
Modified Files:
pkgsrc/www/firefox: Makefile distinfo
pkgsrc/www/firefox-gtk1: Makefile
Added Files:
pkgsrc/www/firefox/patches: patch-ee patch-ef patch-eg
Log Message:
Add "unicode" processing alignment patch from mozilla's bugzilla to make
firefox work again on archs requiring strict alignement.
Bump pkgrevision.
---
Module Name: pkgsrc
Committed By: ghen
Date: Wed Sep 24 14:34:36 UTC 2008
Modified Files:
pkgsrc/www/firefox: Makefile Makefile-firefox.common PLIST distinfo
pkgsrc/www/firefox-bin: Makefile distinfo
pkgsrc/www/firefox-gtk1: Makefile PLIST
Log Message:
Update firefox, firefox-bin and firefox-gtk1 to 2.0.0.17.
(ok during freeze agc@)
Security fixes in this version:
MFSA 2008-45 XBM image uninitialized memory reading
MFSA 2008-44 resource: traversal vulnerabilities
MFSA 2008-43 BOM characters stripped from JavaScript before execution
MFSA 2008-42 Crashes with evidence of memory corruption (rv:1.9.0.2/1.8.1.1=
7)
MFSA 2008-41 Privilege escalation via XPCnativeWrapper pollution
MFSA 2008-40 Forced mouse drag
MFSA 2008-39 Privilege escalation using feed preview page and XSS flaw
MFSA 2008-38 nsXMLDocument::OnChannelRedirect() same-origin violation
MFSA 2008-37 UTF-8 URL stack buffer overflow
For more info, see http://www.mozilla.com/en-US/firefox/2.0.0.17/releasenotes/
Files: