pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: pkgsrc/www/firefox38



Module Name:    pkgsrc
Committed By:   ryoon
Date:           Sat Mar 12 03:47:20 UTC 2016

Modified Files:
        pkgsrc/www/firefox38: Makefile distinfo
Removed Files:
        pkgsrc/www/firefox38/patches: patch-gfx_graphite2_moz-gr-update.sh

Log Message:
Update to 38.7.0

Changelog:
Fixed in Firefox ESR 38.7
    2016-37 Font vulnerabilities in the Graphite 2 library
    2016-35 Buffer overflow during ASN.1 decoding in NSS
    2016-34 Out-of-bounds read in HTML parser following a failed allocation
    2016-31 Memory corruption with malicious NPAPI plugin
    2016-28 Addressbar spoofing though history navigation and Location protocol property
    2016-27 Use-after-free during XML transformations
    2016-25 Use-after-free when using multiple WebRTC data channels
    2016-24 Use-after-free in SetBody
    2016-23 Use-after-free in HTML5 string parser
    2016-21 Displayed page address can be overridden
    2016-20 Memory leak in libstagefright when deleting an array during MP4 processing
    2016-17 Local file overwriting and potential privilege escalation through CSP reports
    2016-16 Miscellaneous memory safety hazards (rv:45.0 / rv:38.7)
    2015-136 Same-origin policy violation using performance.getEntries and history navigation
    2015-81 Use-after-free in MediaStream playback


To generate a diff of this commit:
cvs rdiff -u -r1.15 -r1.16 pkgsrc/www/firefox38/Makefile
cvs rdiff -u -r1.14 -r1.15 pkgsrc/www/firefox38/distinfo
cvs rdiff -u -r1.1 -r0 \
    pkgsrc/www/firefox38/patches/patch-gfx_graphite2_moz-gr-update.sh

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.




Home | Main Index | Thread Index | Old Index