From: QA Team Robot <qa@altlinux.org> To: sisyphus-cybertalk@lists.altlinux.org Subject: [cyber] I: p7/branch packages: +1 (15005) Date: Sun, 21 May 2017 04:51:08 +0000 Message-ID: <20170521045108.GA11971@gyle.altlinux.org> (raw) 1 UPDATED package firefox - The Mozilla Firefox project is a redesign of Mozilla's browser [179M] * Fri May 19 2017 Andrey Cherepanov <cas@altlinux> 45.9.0-alt0.M70P.1 - Backport new ESR version to p7 branch * Thu Apr 20 2017 Andrey Cherepanov <cas@altlinux> 45.9.0-alt1 - New ESR version - Security fixes: + CVE-2017-5429: Memory safety bugs fixed in Firefox 53, Firefox ESR 45.9, + CVE-2017-5462: DRBG flaw in NSS + CVE-2017-5445: Uninitialized values used while parsing + CVE-2017-5469: Potential Buffer overflow in flex-generated code + CVE-2017-5437: Vulnerabilities in Libevent library + CVE-2017-5448: Out-of-bounds write in ClearKeyDecryptor + CVE-2017-5465: Out-of-bounds read in ConvolvePixel + CVE-2017-5447: Out-of-bounds read during glyph processing + CVE-2017-5446: Out-of-bounds read when HTTP/2 DATA frames are sent with + CVE-2017-5444: Buffer overflow while parsing application/http-index-format + CVE-2017-5443: Out-of-bounds write during BinHex decoding + CVE-2017-5464: Memory corruption with accessibility and DOM manipulation + CVE-2017-5442: Use-after-free during style changes + CVE-2017-5441: Use-after-free with selection during scroll events + CVE-2017-5440: Use-after-free in txExecutionState destructor during XSLT + CVE-2017-5439: Use-after-free in nsTArray Length() during XSLT processing + CVE-2017-5438: Use-after-free in nsAutoPtr during XSLT processing + CVE-2017-5460: Use-after-free in frame selection + CVE-2017-5432: Use-after-free in text input selection + CVE-2017-5434: Use-after-free during focus handling + CVE-2017-5459: Buffer overflow in WebGL + CVE-2017-5461: Out-of-bounds write in Base64 encoding in NSS + CVE-2017-5436: Out-of-bounds write with malicious font in Graphite 2 + CVE-2017-5435: Use-after-free during transaction processing in the editor + CVE-2017-5433: Use-after-free in SMIL animation functions * Wed Mar 08 2017 Andrey Cherepanov <cas@altlinux> 45.8.0-alt0.M70P.1 Total 15005 source packages.
reply other threads:[~2017-05-21 4:51 UTC|newest] Thread overview: [no followups] expand[flat|nested] mbox.gz Atom feed
Reply instructions: You may reply publicly to this message via plain-text email using any one of the following methods: * Save the following mbox file, import it into your mail client, and reply-to-all from there: mbox Avoid top-posting and favor interleaved quoting: https://en.wikipedia.org/wiki/Posting_style#Interleaved_style * Reply using the --to, --cc, and --in-reply-to switches of git-send-email(1): git send-email \ --in-reply-to=20170521045108.GA11971@gyle.altlinux.org \ --to=qa@altlinux.org \ --cc=devel@lists.altlinux.org \ --cc=sisyphus-cybertalk@lists.altlinux.org \ /path/to/YOUR_REPLY https://kernel.org/pub/software/scm/git/docs/git-send-email.html * If your mail client supports setting the In-Reply-To header via mailto: links, try the mailto: link
ALT Linux Sisyphus cybertalk This inbox may be cloned and mirrored by anyone: git clone --mirror http://lore.altlinux.org/sisyphus-cybertalk/0 sisyphus-cybertalk/git/0.git # If you have public-inbox 1.1+ installed, you may # initialize and index your mirror using the following commands: public-inbox-init -V2 sisyphus-cybertalk sisyphus-cybertalk/ http://lore.altlinux.org/sisyphus-cybertalk \ sisyphus-cybertalk@lists.altlinux.org sisyphus-cybertalk@lists.altlinux.ru sisyphus-cybertalk@lists.altlinux.com public-inbox-index sisyphus-cybertalk Example config snippet for mirrors. Newsgroup available over NNTP: nntp://lore.altlinux.org/org.altlinux.lists.sisyphus-cybertalk AGPL code for this site: git clone https://public-inbox.org/public-inbox.git