Subject: CVS commit: [pkgsrc-2006Q1] pkgsrc/www/firefox-bin
To: None <pkgsrc-changes@NetBSD.org>
From: Geert Hendrickx <ghen@netbsd.org>
List: pkgsrc-changes
Date: 06/02/2006 15:50:15
Module Name:	pkgsrc
Committed By:	ghen
Date:		Fri Jun  2 15:50:15 UTC 2006

Modified Files:
	pkgsrc/www/firefox-bin [pkgsrc-2006Q1]: Makefile distinfo

Log Message:
Pullup ticket 1681 - requested by salo
security update for firefox-bin

Revisions pulled up:
- pkgsrc/www/firefox-bin/Makefile	1.18
- pkgsrc/www/firefox-bin/distinfo 	1.17

   Module Name:    pkgsrc
   Committed By:   salo
   Date:           Fri Jun  2 12:27:49 UTC 2006

   Modified Files:
           pkgsrc/www/firefox-bin: Makefile distinfo

   Log Message:
   Updated to version 1.5.0.4

   Changes:

   Fixes for security issues:
    MFSA 2006-43 Privilege escalation using addSelectionListener
    MFSA 2006-42 Web site XSS using BOM on UTF-8 pages
    MFSA 2006-41 File stealing by changing input type (variant)
    MFSA 2006-39 "View Image" local resource linking (Windows)
    MFSA 2006-38 Buffer overflow in crypto.signText()
    MFSA 2006-37 Remote compromise via content-defined setter on object prototypes
    MFSA 2006-36 PLUGINSPAGE privileged JavaScript execution 2
    MFSA 2006-35 Privilege escalation through XUL persist
    MFSA 2006-34 XSS viewing javascript: frames or images from context menu
    MFSA 2006-33 HTTP response smuggling
    MFSA 2006-32 Fixes for crashes with potential memory corruption
    MFSA 2006-31 EvalInSandbox escape (Proxy Autoconfig, Greasemonkey)


To generate a diff of this commit:
cvs rdiff -r1.15.2.2 -r1.15.2.3 pkgsrc/www/firefox-bin/Makefile
cvs rdiff -r1.14.2.2 -r1.14.2.3 pkgsrc/www/firefox-bin/distinfo

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.