./www/palemoon, Customizable web browser (unofficial distribution of Pale Moon)

[ CVSweb ] [ Homepage ] [ RSS ] [ Required by ] [ Add to tracker ]


Branch: CURRENT, Version: 33.6.0.1, Package name: palemoon-33.6.0.1, Maintainer: nia

A customizable, privacy-respecting web browser derived from the
independent Pale Moon(tm) codebase, in turn derived from community
code from the Mozilla project.

This package is an UNOFFICIAL build and not to be confused with
official Pale Moon software available from palemoon.org.

No support is provided from Moonchild Productions - all
responsibility for this package falls on the pkgsrc community.

Pale Moon does not support NetBSD and this software has been
modified to enhance NetBSD compatibility.

Pale Moon is a trademark of Moonchild Productions.


Version history: (Expand)


CVS history: (Expand)


   2025-02-21 13:29:11 by Nia Alarie | Files touched by this commit (5)
Log message:
palemoon: Update to 33.6.0.1

This release fixes additional issues with CloudFlare.

While here, fix PLIST on Linux.  This was verified to build on Linux by
drecklypkg CI and on NetBSD by me.
   2025-02-12 07:45:45 by Ryo ONODERA | Files touched by this commit (850)
Log message:
*: Recursive revbump from audio/flac-1.5.0
   2025-02-07 17:18:26 by Nia Alarie | Files touched by this commit (2)
Log message:
palemoon: Update to 33.6.0

     v33.6.0 (2025-02-07)

   This is a development, bugfix and security release.
   Due to the fact that CloudFlare has been causing application crashes that
   impacts many users, this release has been pulled forward a few days to
   address these crashes with priority (should be fixed in this release).
   Please note that at the time of publication of this browser version and
   release notes, even though crashes have been fixed, CloudFlare is denying
   UXP-based browsers as well as several other independent/smaller browsers
   access to many websites by way of their malfunctioning "security \ 
check" or
   captcha, with no priority given to actually fix it despite it being denial
   of service for users of affected browsers. Please consider reporting any
   and all occurrences of a failing or looping CloudFlare checks on websites
   to CloudFlare as well as the owners of affected websites (you may have to
   temporarily use a Chromium-based browser to do this).

   Changes/fixes:
     * Implemented a content sniffer for ADTS and raw AAC audio.
     * Implemented AbortSignal.abort() and stub AbortSignal.timeout().
     * Unprefixed the :modal CSS pseudo-class and exposed it to content.
     * Improved efficiency and performance of the Cycle Collector.
     * Added a check for explicit expectance of a percentage value in CSS HSL
       for the S and L components.
     * Updated the cookie storage database to no longer use BaseDomain. See
       implementation notes.
     * Updated CSS grid handling to no longer apply auto min-sizing when flex
       max-sizing (browser parity).
     * Updated the root certificates in the internal trust store.
     * Updated the Public Suffix List (eTLD) in the browser.
     * Removed no longer specced URL Constructor(DOMString url, URL base).
     * Restored unofficial branding to what it was before ("New Moon" \ 
instead
       of "Browser").
     * Changed the default Firefox Compatibility user-agent version to 115.0.
     * Fixed an issue where cloned <audio> or <video> elements would not
       respect the original element's muted state.
     * Fixed a number of bugs and spec compliance issues in WebCrypto.
     * Fixed installer application naming issue causing failure to detect
       running application.
     * Fixed a crash when Interval handlers are present in scripts that are
       automatically terminated due to excessive runtime.
     * Fixed a crash in JS Structured Cloning when the input would be bogus
       (CloudFlare-triggered crash).
     * Fixed a crash in the XSLT stylesheet importing code.
     * Updated NSS to 3.90.6 (custom) to pick up several security fixes.
     * Security issues addressed: CVE-2025-1009.
   Implementation notes:
     * When updating the browser to this version, a one-way upgrade of the
       cookie database in your browser profile is performed on first start.
       The new cookie database is not backwards compatible, meaning you
       cannot use the browser profiles that have been upgraded by this
       version or later with any prior versions of the browser without data
       loss.
       This is generally the case as most upgrades of user data storage are
       one-way, but having all your cookies cleared unintentionally is
       something most people prefer to avoid, hence this warning and a
       general reminder of profile migrations to newer versions that may
       happen with any (non-minor) browser upgrade.
   2025-01-16 18:46:55 by Nia Alarie | Files touched by this commit (2) | Package updated
Log message:
palemoon: Update to 33.5.1

     v33.5.1 (2025-01-15)

   This is a small bugfix and security release.

   Changes/fixes:
     * Changed the way cookies are handled internally to fix an issue with
       cookie database corruption as a result of updates to domain suffixes.
     * Fixed an issue with Alternative-Services protocol negotiation.
     * Fixed a potential crash scenario with Structured Clone operations. DiD
     * Fixed a potential issue with line breaking if out of memory.
     * Fixed a rare crash with opportunistic encryption.
     * Minor code cleanup.
     * Security issues addressed: CVE-2025-0239 and CVE-2025-0238.
   2024-12-27 09:21:09 by Thomas Klausner | Files touched by this commit (1055)
Log message:
*: recursive bump for pango requiring fontconfig 2.15
   2024-12-05 17:54:05 by Nia Alarie | Files touched by this commit (2) | Package updated
Log message:
palemoon: Update to 33.5.0

   This is a development, bugfix and security release.

   Changes/fixes:
     * Implemented Regular Expression "match indices" (/d) feature.
     * Added a way to programmatically clear the DNS cache in the browser,
       and added a button to the UI for it in about:networking.
     * Updated handling of referrer policies to adhere to the updated spec.
     * CSS font variations keywords no longer throw an error. See
       implementation notes.
     * CSS border-radius will now also apply to element outlines.
     * Improved the display of amount of cached web content in preferences
       when cache is being cleared.
     * Updated NSS to 3.90.5 (unofficial) to pick up some security fixes.
     * Refreshed the built-in list of effective top-level domains.
     * Fixed several application crashes.
     * Reduced unnecessary debug/informative messages in release builds
       (WebGL and CSP).
     * Backed out building against ffmpeg 6.0 and ffvpx 6.0 for causing a
       video playback regression on full-range videos (levels 0-255).
     * Cleaned up a large amount of leftover Boot2Gecko code, simplifying
       code paths throughout the code base.
     * From this version forward we also publish language packs for Persian
       (Farsi), Hindi, Kannada and Vietnamese.
     * Security issues addressed: CVE-2024-11693 and CVE-2024-11704 (DiD).
   2024-11-17 08:17:06 by Thomas Klausner | Files touched by this commit (944)
Log message:
*: recursive bump for default-on option of at-spi2-core
   2024-11-14 23:22:33 by Thomas Klausner | Files touched by this commit (2429)
Log message:
*: recursive bump for icu 76 shlib major version bump