Subject: CVS commit: [pkgsrc-2010Q2] pkgsrc/mail/thunderbird
From: Matthias Scheler
Date: 2010-07-22 18:11:00
Message id: 20100722161100.B2CAA175DD@cvs.netbsd.org

Log Message:
Pullup ticket #3179 - requested by tnn
mail/thunderbird: security update and build fix

Revisions pulled up:
- mail/thunderbird/Makefile			patch
- mail/thunderbird/distinfo			patch
- mail/thunderbird/patches/patch-directory_c-sdk_configure.in	new file
- mail/thunderbird/patches/patch-directory_c-sdk_ldap_include_portable.h	new file
- \ 
mail/thunderbird/patches/patch-directory_c-sdk_ldap_libraries_libldap_Makefile.in	new \ 
file
- mail/thunderbird/patches/patch-mp		patch
---
Fix the following security vulnerabilities:

MFSA 2010-47 Cross-origin data leakage from script filename in error messages
MFSA 2010-46 Cross-domain data theft using CSS
MFSA 2010-42 Cross-origin data disclosure via Web Workers and importScripts
MFSA 2010-41 Remote code execution using malformed PNG image
MFSA 2010-40 nsTreeSelection dangling pointer remote code execution
MFSA 2010-39 nsCSSValue::Array index integer overflow
MFSA 2010-34 Miscellaneous memory safety hazards (rv:1.9.2.7/ 1.9.1.11)

Files:
RevisionActionfile
1.55.2.1modifypkgsrc/mail/thunderbird/Makefile
1.69.2.1modifypkgsrc/mail/thunderbird/distinfo
1.1.4.1modifypkgsrc/mail/thunderbird/patches/patch-mp
1.1.2.2addpkgsrc/mail/thunderbird/patches/patch-directory_c-sdk_configure.in
1.2.2.2addpkgsrc/mail/thunderbird/patches/patch-directory_c-sdk_ldap_include_portable.h
1.1.2.2addpkgsrc/mail/thunderbird/patches/patch-directory_c-sdk_ldap_libraries_libldap_Makefile.in