Subject: CVS commit: [pkgsrc-2004Q4] pkgsrc/www/opera7
To: None <pkgsrc-changes@NetBSD.org>
From: Lubomir Sedlacik <salo@netbsd.org>
List: pkgsrc-changes
Date: 12/30/2004 12:21:40
Module Name: pkgsrc
Committed By: salo
Date: Thu Dec 30 12:21:40 UTC 2004
Modified Files:
pkgsrc/www/opera7 [pkgsrc-2004Q4]: Makefile distinfo
Log Message:
Pullup ticket 193 - requested by Matthias Scheler
security fix for opera7
Module Name: pkgsrc
Committed By: tron
Date: Wed Dec 29 23:19:34 UTC 2004
Modified Files:
pkgsrc/www/opera7: Makefile distinfo
Log Message:
Update "opera" package to version 7.54u1 (as 7.54pl1). Changes since
version 7.54:
- Tightened origin check for frames, fixing issue reported in Secunia
Advisory 13253. A side effect of this is that documents not passing
the origin check will open in a new page.
- Fixed issue reported by Marc Schönefeld: intrusive JavaScript or
Java applet could exploit Sun Java vulnerability to retrieve
logged-in user's username and install directory.
- Fixed LiveConnect class access security issue reported by Jouko
Pynnönen.
- Fixed download issue reported by Andreas Sandblad, Secunia
Research, described in Secunia Advisory 12981: periods and
non-breaking spaces in content-type header type could obscure file
type.
- Improved support for the "must-revalidate" cache directive.
To generate a diff of this commit:
cvs rdiff -r1.26 -r1.26.2.1 pkgsrc/www/opera7/Makefile
cvs rdiff -r1.15 -r1.15.4.1 pkgsrc/www/opera7/distinfo
Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.