![]() ![]() Version bump to new stability release: * DNS resolution in MakeSN of nsAuthSSPI causing issues for proxy servers that support NTLM auth reverseDependencyUpdate is added since 1.9.2 series breaks API/ABI.īump to new security release (#12316): * XSS hazard using SVG document and binary Content-Type * XSS due to window.dialogArguments being readable cross-domain * Use-after-free crash in HTML parser * Web Worker Array Handling Heap Corruption Vulnerability * Crashes with evidence of memory corruption (rv:1.9.1.8/ 1.9.0.18) Also change Xulrunner path as xulrunner-1.9.x instead of xulrunner-1.9. Version bump to new release: * Firefox 3.6.4 provides uninterrupted browsing for Linux users when there is a crash in plugins. Version bump to new release which just increases hang detector timeout () ![]() Version bump to new release: * Dangling pointer crash regression from plugin parameter array fix * Cross-origin data leakage from script filename in error messages * Cross-domain data theft using CSS * Multiple location bar spoofing vulnerabilities * Characters mapped to U+FFFD in 8 bit encodings cause subsequent character to vanish * Same-origin bypass using canvas context * Cross-origin data disclosure via Web Workers and importScripts * Remote code execution using malformed PNG image * nsTreeSelection dangling pointer remote code execution vulnerability * nsCSSValue::Array index integer overflow * Arbitrary code execution using SJOW and fast native function * Plugin parameter EnsureCachedAttrParamArrays remote code execution vulnerability * Use-after-free error in NodeIterator * DOM attribute cloning remote code execution vulnerability * Miscellaneous memory safety hazards (rv:1.9.2.7/ 1.9.1.11) Version bump to 2 series which is the base of Firefox 4. * Upstream says, -Os is broken in GCC 4.5 they uses -finline-limit=50 to workaround that.Īdd a patch to provide a second xpcomglue library compile without new mozalloc stuff to provide backwards compatibility. ![]() Use just -enable-optimizations as upstream said. * Do not override upstream optimization flags. Version bump to latest mercurial snapshotĪdd -enable-shared-js and -with-distribution-id parameters to configure. ![]() * Add COMAR postinstall to register Xulrunner globally.Ĭhange xulrunner directory from 2.0.0 to 2.0 and add a few patches from SuSEĮnable gnome-vfs again and recompile ro remove bundled NSS * Mark /etc/gre.d as data instead of config to prevent bugs like #16343. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |