Subject: CVS commit: [pkgsrc-2006Q1] pkgsrc/www/firefox-bin
To: None <pkgsrc-changes@NetBSD.org>
From: Geert Hendrickx <ghen@netbsd.org>
List: pkgsrc-changes
Date: 06/02/2006 15:50:15
Module Name: pkgsrc
Committed By: ghen
Date: Fri Jun 2 15:50:15 UTC 2006
Modified Files:
pkgsrc/www/firefox-bin [pkgsrc-2006Q1]: Makefile distinfo
Log Message:
Pullup ticket 1681 - requested by salo
security update for firefox-bin
Revisions pulled up:
- pkgsrc/www/firefox-bin/Makefile 1.18
- pkgsrc/www/firefox-bin/distinfo 1.17
Module Name: pkgsrc
Committed By: salo
Date: Fri Jun 2 12:27:49 UTC 2006
Modified Files:
pkgsrc/www/firefox-bin: Makefile distinfo
Log Message:
Updated to version 1.5.0.4
Changes:
Fixes for security issues:
MFSA 2006-43 Privilege escalation using addSelectionListener
MFSA 2006-42 Web site XSS using BOM on UTF-8 pages
MFSA 2006-41 File stealing by changing input type (variant)
MFSA 2006-39 "View Image" local resource linking (Windows)
MFSA 2006-38 Buffer overflow in crypto.signText()
MFSA 2006-37 Remote compromise via content-defined setter on object prototypes
MFSA 2006-36 PLUGINSPAGE privileged JavaScript execution 2
MFSA 2006-35 Privilege escalation through XUL persist
MFSA 2006-34 XSS viewing javascript: frames or images from context menu
MFSA 2006-33 HTTP response smuggling
MFSA 2006-32 Fixes for crashes with potential memory corruption
MFSA 2006-31 EvalInSandbox escape (Proxy Autoconfig, Greasemonkey)
To generate a diff of this commit:
cvs rdiff -r1.15.2.2 -r1.15.2.3 pkgsrc/www/firefox-bin/Makefile
cvs rdiff -r1.14.2.2 -r1.14.2.3 pkgsrc/www/firefox-bin/distinfo
Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.