Path to this page:
Subject: CVS commit: [pkgsrc-2014Q1] pkgsrc/mail/thunderbird
From: S.P.Zeidler
Date: 2014-05-07 09:34:22
Message id: 20140507073422.65F7196@cvs.netbsd.org
Log Message:
Pullup ticket #4399 - requested by tron
mail/thunderbird: security update
Revisions pulled up:
- mail/thunderbird/Makefile 1.136
- mail/thunderbird/distinfo 1.139
-------------------------------------------------------------------
Module Name: pkgsrc
Committed By: tron
Date: Tue May 6 16:03:38 UTC 2014
Modified Files:
pkgsrc/mail/thunderbird: Makefile distinfo
Log Message:
Update "thunderbird" package to version 24.5.0.
The following security problems were fixed in this release:
- MFSA 2014-46 Use-after-free in nsHostResolve
- MFSA 2014-44 Use-after-free in imgLoader while resizing images
- MFSA 2014-43 Cross-site scripting (XSS) using history navigations
- MFSA 2014-42 Privilege escalation through Web Notification API
- MFSA 2014-38 Buffer overflow when using non-XBL object as XBL
- MFSA 2014-37 Out of bounds read while decoding JPG images
- MFSA 2014-35 Privilege escalation through Mozilla Maintenance Service
Installer
- MFSA 2014-34 Miscellaneous memory safety hazards
To generate a diff of this commit:
cvs rdiff -u -r1.135 -r1.136 pkgsrc/mail/thunderbird/Makefile
cvs rdiff -u -r1.138 -r1.139 pkgsrc/mail/thunderbird/distinfo
Files: