pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/pkgsrc-2007Q2]: pkgsrc/www Pullup ticket 2154 - requested by ghen



details:   https://anonhg.NetBSD.org/pkgsrc/rev/24d49338d767
branches:  pkgsrc-2007Q2
changeset: 530483:24d49338d767
user:      salo <salo%pkgsrc.org@localhost>
date:      Thu Aug 02 22:42:51 2007 +0000

description:
Pullup ticket 2154 - requested by ghen
security update for firefox

Revisions pulled up:
- pkgsrc/www/firefox/Makefile-firefox.common            1.46, 1.47
- pkgsrc/www/firefox/PLIST                              1.28
- pkgsrc/www/firefox/distinfo                           1.67, 1.68
- pkgsrc/www/firefox/patches/patch-cn                   1.5
- pkgsrc/www/firefox-gtk1/PLIST                         1.15
- pkgsrc/www/firefox-bin/Makefile                       1.30, 1.32
- pkgsrc/www/firefox-bin/distinfo                       1.27, 1.29
- pkgsrc/www/firefox15-bin/DESCR                        1.3
- pkgsrc/www/firefox15-gtk1/DESCR                       1.3
- pkgsrc/www/firefox15/DESCR                            1.3

   Module Name:         pkgsrc
   Committed By:        xtraeme
   Date:                Thu Jul 19 18:20:59 UTC 2007

   Modified Files:
        pkgsrc/www/firefox-bin: Makefile distinfo

   Log Message:
   Update to 2.0.0.5:

   MFSA 2007-25 XPCNativeWrapper pollution
   MFSA 2007-24 Unauthorized access to wyciwyg:// documents
   MFSA 2007-23 Remote code execution by launching Firefox from
                Internet Explorer
   MFSA 2007-22 File type confusion due to %00 in name
   MFSA 2007-21 Privilege escalation using an event handler attached to an
                element not in the document
   MFSA 2007-20 Frame spoofing while window is loading
   MFSA 2007-19 XSS using addEventListener and setTimeout
   MFSA 2007-18 Crashes with evidence of memory corruption
---
   Module Name:         pkgsrc
   Committed By:        ghen
   Date:                Thu Jul 26 08:43:51 UTC 2007

   Modified Files:
        pkgsrc/www/firefox: Makefile-firefox.common PLIST distinfo
        pkgsrc/www/firefox-gtk1: PLIST
        pkgsrc/www/firefox/patches: patch-cn

   Log Message:
   Update firefox, firefox-bin and firefox-gtk1 to 2.0.0.5.

   Security fixes in this version:

   MFSA 2007-25 XPCNativeWrapper pollution
   MFSA 2007-24 Unauthorized access to wyciwyg:// documents
   MFSA 2007-23 Remote code execution by launching Firefox from Internet
                Explorer
   MFSA 2007-22 File type confusion due to %00 in name
   MFSA 2007-21 Privilege escalation using an event handler attached to an
                element not in the document
   MFSA 2007-20 Frame spoofing while window is loading
   MFSA 2007-19 XSS using addEventListener and setTimeout
   MFSA 2007-18 Crashes with evidence of memory corruption

   For more info, see http://www.mozilla.com/en-US/firefox/2.0.0.5/releasenotes/
---
   Module Name:         pkgsrc
   Committed By:        ghen
   Date:                Tue Jul 31 10:06:48 UTC 2007

   Modified Files:
        pkgsrc/www/firefox: Makefile-firefox.common distinfo
        pkgsrc/www/firefox-bin: Makefile distinfo

   Log Message:
   Update firefox, firefox-bin and firefox-gtk1 to 2.0.0.6.

   Security fixes in this version:

   MFSA 2007-27 Unescaped URIs passed to external programs
   MFSA 2007-26 Privilege escalation through chrome-loaded about:blank windows

   For more info, see http://www.mozilla.com/en-US/firefox/2.0.0.6/releasenotes/
---
   Module Name:         pkgsrc
   Committed By:        ghen
   Date:                Thu Jul 26 08:47:36 UTC 2007

   Modified Files:
        pkgsrc/www/firefox15: DESCR
        pkgsrc/www/firefox15-bin: DESCR
        pkgsrc/www/firefox15-gtk1: DESCR

   Log Message:
   Firefox 1.5.0.x has been EOL'd.

diffstat:

 www/firefox-bin/Makefile            |   4 ++--
 www/firefox-bin/distinfo            |   8 ++++----
 www/firefox-gtk1/PLIST              |   4 +++-
 www/firefox/Makefile-firefox.common |   4 ++--
 www/firefox/PLIST                   |   4 +++-
 www/firefox/distinfo                |  10 +++++-----
 www/firefox/patches/patch-cn        |   6 +++---
 www/firefox15-bin/DESCR             |   5 ++---
 www/firefox15-gtk1/DESCR            |   5 ++---
 www/firefox15/DESCR                 |   5 ++---
 10 files changed, 28 insertions(+), 27 deletions(-)

diffs (173 lines):

diff -r f245be65349b -r 24d49338d767 www/firefox-bin/Makefile
--- a/www/firefox-bin/Makefile  Thu Aug 02 07:29:59 2007 +0000
+++ b/www/firefox-bin/Makefile  Thu Aug 02 22:42:51 2007 +0000
@@ -1,7 +1,7 @@
-# $NetBSD: Makefile,v 1.29 2007/05/31 07:25:09 ghen Exp $
+# $NetBSD: Makefile,v 1.29.2.1 2007/08/02 22:42:52 salo Exp $
 
 MOZILLA=               firefox
-MOZ_VER=               2.0.0.4
+MOZ_VER=               2.0.0.6
 MOZ_DISTVER=           ${MOZ_VER}
 
 HOMEPAGE=              http://www.mozilla.com/en-US/firefox/
diff -r f245be65349b -r 24d49338d767 www/firefox-bin/distinfo
--- a/www/firefox-bin/distinfo  Thu Aug 02 07:29:59 2007 +0000
+++ b/www/firefox-bin/distinfo  Thu Aug 02 22:42:51 2007 +0000
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.26 2007/05/31 07:25:09 ghen Exp $
+$NetBSD: distinfo,v 1.26.2.1 2007/08/02 22:42:52 salo Exp $
 
-SHA1 (firefox/releases/2.0.0.4/linux-i686/en-US/firefox-2.0.0.4.tar.gz) = d77aca927ea915f287677e8a29488a1e9c48f9a8
-RMD160 (firefox/releases/2.0.0.4/linux-i686/en-US/firefox-2.0.0.4.tar.gz) = b8f1a5d78cdbff38f499a94ccc97498b0dc40abd
-Size (firefox/releases/2.0.0.4/linux-i686/en-US/firefox-2.0.0.4.tar.gz) = 9655661 bytes
+SHA1 (firefox/releases/2.0.0.6/linux-i686/en-US/firefox-2.0.0.6.tar.gz) = 02b6a9dcba33f841cf089a1c7961615960512545
+RMD160 (firefox/releases/2.0.0.6/linux-i686/en-US/firefox-2.0.0.6.tar.gz) = 8cad47d2fa04098762a215c14fbc1f91364b2f0c
+Size (firefox/releases/2.0.0.6/linux-i686/en-US/firefox-2.0.0.6.tar.gz) = 9671806 bytes
diff -r f245be65349b -r 24d49338d767 www/firefox-gtk1/PLIST
--- a/www/firefox-gtk1/PLIST    Thu Aug 02 07:29:59 2007 +0000
+++ b/www/firefox-gtk1/PLIST    Thu Aug 02 22:42:51 2007 +0000
@@ -1,4 +1,4 @@
-@comment $NetBSD: PLIST,v 1.14 2007/05/31 07:25:10 ghen Exp $
+@comment $NetBSD: PLIST,v 1.14.2.1 2007/08/02 22:42:52 salo Exp $
 bin/${MOZILLA}
 @comment begin PROGRAMS
 lib/${MOZILLA}/${MOZILLA_BIN}
@@ -1982,6 +1982,7 @@
 include/${MOZILLA}/toolkitcomps/nsICommandLine.h
 include/${MOZILLA}/toolkitcomps/nsICommandLineHandler.h
 include/${MOZILLA}/toolkitcomps/nsICommandLineRunner.h
+include/${MOZILLA}/toolkitcomps/nsICommandLineValidator.h
 include/${MOZILLA}/toolkitcomps/nsIRemoteService.h
 include/${MOZILLA}/toolkitcomps/nsToolkitCompsCID.h
 include/${MOZILLA}/transformiix/nsIXFormsUtilityService.h
@@ -2259,6 +2260,7 @@
 include/${MOZILLA}/xpcom/nsIEnvironment.h
 include/${MOZILLA}/xpcom/nsIErrorService.h
 include/${MOZILLA}/xpcom/nsIEventQueue.h
+include/${MOZILLA}/xpcom/nsIEventQueueListener.h
 include/${MOZILLA}/xpcom/nsIEventQueueService.h
 include/${MOZILLA}/xpcom/nsIEventTarget.h
 include/${MOZILLA}/xpcom/nsIException.h
diff -r f245be65349b -r 24d49338d767 www/firefox/Makefile-firefox.common
--- a/www/firefox/Makefile-firefox.common       Thu Aug 02 07:29:59 2007 +0000
+++ b/www/firefox/Makefile-firefox.common       Thu Aug 02 22:42:51 2007 +0000
@@ -1,7 +1,7 @@
-# $NetBSD: Makefile-firefox.common,v 1.45 2007/06/16 01:14:48 dmcmahill Exp $
+# $NetBSD: Makefile-firefox.common,v 1.45.2.1 2007/08/02 22:42:51 salo Exp $
 
 MOZILLA_BIN=           firefox-bin
-MOZ_VER=               2.0.0.4
+MOZ_VER=               2.0.0.6
 EXTRACT_SUFX=          .tar.bz2
 
 DISTNAME=              firefox-${MOZ_VER}-source
diff -r f245be65349b -r 24d49338d767 www/firefox/PLIST
--- a/www/firefox/PLIST Thu Aug 02 07:29:59 2007 +0000
+++ b/www/firefox/PLIST Thu Aug 02 22:42:51 2007 +0000
@@ -1,4 +1,4 @@
-@comment $NetBSD: PLIST,v 1.27 2007/05/31 07:25:08 ghen Exp $
+@comment $NetBSD: PLIST,v 1.27.2.1 2007/08/02 22:42:51 salo Exp $
 bin/${MOZILLA}
 @comment begin PROGRAMS
 lib/${MOZILLA}/${MOZILLA_BIN}
@@ -1999,6 +1999,7 @@
 include/${MOZILLA}/toolkitcomps/nsICommandLine.h
 include/${MOZILLA}/toolkitcomps/nsICommandLineHandler.h
 include/${MOZILLA}/toolkitcomps/nsICommandLineRunner.h
+include/${MOZILLA}/toolkitcomps/nsICommandLineValidator.h
 include/${MOZILLA}/toolkitcomps/nsIRemoteService.h
 include/${MOZILLA}/toolkitcomps/nsToolkitCompsCID.h
 include/${MOZILLA}/transformiix/nsIXFormsUtilityService.h
@@ -2275,6 +2276,7 @@
 include/${MOZILLA}/xpcom/nsIEnvironment.h
 include/${MOZILLA}/xpcom/nsIErrorService.h
 include/${MOZILLA}/xpcom/nsIEventQueue.h
+include/${MOZILLA}/xpcom/nsIEventQueueListener.h
 include/${MOZILLA}/xpcom/nsIEventQueueService.h
 include/${MOZILLA}/xpcom/nsIEventTarget.h
 include/${MOZILLA}/xpcom/nsIException.h
diff -r f245be65349b -r 24d49338d767 www/firefox/distinfo
--- a/www/firefox/distinfo      Thu Aug 02 07:29:59 2007 +0000
+++ b/www/firefox/distinfo      Thu Aug 02 22:42:51 2007 +0000
@@ -1,8 +1,8 @@
-$NetBSD: distinfo,v 1.66 2007/05/31 07:25:08 ghen Exp $
+$NetBSD: distinfo,v 1.66.2.1 2007/08/02 22:42:51 salo Exp $
 
-SHA1 (firefox-2.0.0.4-source.tar.bz2) = 655ce5d1e6addee8fdb8f5f07aee7cbf3e86dd1b
-RMD160 (firefox-2.0.0.4-source.tar.bz2) = ee6d5bcfb68984bd062457f56f0652f4870697bc
-Size (firefox-2.0.0.4-source.tar.bz2) = 37321839 bytes
+SHA1 (firefox-2.0.0.6-source.tar.bz2) = eb72f55e4a8bf08e8c6ef227c0ade3d068ba1082
+RMD160 (firefox-2.0.0.6-source.tar.bz2) = 5132a3b88de5416df27cdf9b9a64bec9dc42fffa
+Size (firefox-2.0.0.6-source.tar.bz2) = 37392782 bytes
 SHA1 (patch-aa) = 5095449d4e979085fc5791b9d0251076b9c969c3
 SHA1 (patch-ab) = 19069a4e572744eccb04e9906e16dad28d2dac01
 SHA1 (patch-ac) = 3f28e27c100655aca4daaca02a77a76064359e94
@@ -43,7 +43,7 @@
 SHA1 (patch-ck) = 18e6c412399c8b5b89941d818cf2589711f35472
 SHA1 (patch-cl) = a08ba37aa7ac7806123aa21b6ff8055c6ded6449
 SHA1 (patch-cm) = 7da6e9da803407b25bf4b707562777e8429a37a4
-SHA1 (patch-cn) = d1e476da65e7cdd824df5ac4f9aa026163e4b114
+SHA1 (patch-cn) = dbee403dbe19cb48eff2079f92c8e6a7a94534c4
 SHA1 (patch-da) = 356e37429832ffd296fa79b9aa7ef20c05d851e0
 SHA1 (patch-db) = f10187cf9de4466e49a967b79875eb01c5afd69f
 SHA1 (patch-dc) = ba7b06f04460d4966e115a9ffdeafc1ebf555972
diff -r f245be65349b -r 24d49338d767 www/firefox/patches/patch-cn
--- a/www/firefox/patches/patch-cn      Thu Aug 02 07:29:59 2007 +0000
+++ b/www/firefox/patches/patch-cn      Thu Aug 02 22:42:51 2007 +0000
@@ -1,6 +1,6 @@
-$NetBSD: patch-cn,v 1.4 2007/05/31 07:25:09 ghen Exp $
+$NetBSD: patch-cn,v 1.4.2.1 2007/08/02 22:42:52 salo Exp $
 
---- extensions/transformiix/source/xpath/XFormsFunctionCall.cpp.orig   2007-04-27 03:08:49.000000000 +0200
+--- extensions/transformiix/source/xpath/XFormsFunctionCall.cpp.orig   2007-06-24 02:00:32.000000000 +0200
 +++ extensions/transformiix/source/xpath/XFormsFunctionCall.cpp
 @@ -104,7 +104,7 @@ XFormsFunctionCall::evaluate(txIEvalCont
          res = (res/i);
@@ -26,7 +26,7 @@
        PRInt32 index = 0;
 -      double res = Double::NaN;
 +      double res = Double::NaN();
-       rv = xformsService->GetRepeatIndexById(mResolverNode, indexId, &index);
+       rv = xformsService->GetRepeatIndexById(mNode, indexId, &index);
        NS_ENSURE_SUCCESS(rv, rv);
  
 @@ -344,7 +344,7 @@ XFormsFunctionCall::evaluate(txIEvalCont
diff -r f245be65349b -r 24d49338d767 www/firefox15-bin/DESCR
--- a/www/firefox15-bin/DESCR   Thu Aug 02 07:29:59 2007 +0000
+++ b/www/firefox15-bin/DESCR   Thu Aug 02 22:42:51 2007 +0000
@@ -8,6 +8,5 @@
 can be extended by developers using industry standards such as XML,
 CSS, JavaScript, C++, etc. Many extensions are available.
 
-Note: Firefox 1.5.0.x will be maintained with security and stability
-updates until June 2007. All users are strongly encouraged to upgrade
-to Firefox 2.
+Note: Mozilla ceased supporting Firefox 1.5.0.x in May 2007.  All users
+are strongly encouraged to upgrade to Firefox 2 (see www/firefox-bin).
diff -r f245be65349b -r 24d49338d767 www/firefox15-gtk1/DESCR
--- a/www/firefox15-gtk1/DESCR  Thu Aug 02 07:29:59 2007 +0000
+++ b/www/firefox15-gtk1/DESCR  Thu Aug 02 22:42:51 2007 +0000
@@ -8,8 +8,7 @@
 can be extended by developers using industry standards such as XML,
 CSS, JavaScript, C++, etc. Many extensions are available.
 
-Note: Firefox 1.5.0.x will be maintained with security and stability
-updates until June 2007. All users are strongly encouraged to upgrade
-to Firefox 2.
+Note: Mozilla ceased supporting Firefox 1.5.0.x in May 2007.  All users
+are strongly encouraged to upgrade to Firefox 2 (see www/firefox-gtk1).
 
 firefox-gtk1 uses GTK+-1.x widgets.
diff -r f245be65349b -r 24d49338d767 www/firefox15/DESCR
--- a/www/firefox15/DESCR       Thu Aug 02 07:29:59 2007 +0000
+++ b/www/firefox15/DESCR       Thu Aug 02 22:42:51 2007 +0000
@@ -8,6 +8,5 @@
 can be extended by developers using industry standards such as XML,
 CSS, JavaScript, C++, etc. Many extensions are available.
 
-Note: Firefox 1.5.0.x will be maintained with security and stability
-updates until June 2007. All users are strongly encouraged to upgrade
-to Firefox 2.
+Note: Mozilla ceased supporting Firefox 1.5.0.x in May 2007.  All users
+are strongly encouraged to upgrade to Firefox 2 (see www/firefox).



Home | Main Index | Thread Index | Old Index