On Thu, Feb 19, 2009 at 09:35:43AM -0600, Tim Zingelman wrote:
Patches are available for firefox 2.0.0.20 to fix the latest security
issues reported:
CVE-2009-0355
CVE-2009-0356
CVE-2009-0357
http://www.freebsd.org/cgi/cvsweb.cgi/ports/www/firefox/files/
patch-ff-380418
patch-ff-460425
patch-ff-466937
I am happy to generate patches for the package to incorporate them and
bump the version to 2.0.0.20.
Firefox 2.0.0.20 has been released but fixes a Windows-only issue (actually,
adds a fix already present in 2.0.0.19 but missing in the Windows binaries).
http://www.mozilla.org/security/announce/2008/mfsa2008-65.html