From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Date: Fri, 14 Sep 2012 01:36:06 +0000 From: QA Team Robot To: sisyphus-cybertalk@lists.altlinux.org Message-ID: <20120914013606.GA28373@granary.egro.altlinux.org> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Subject: [cyber] I: p5/branch packages: -5 +11 (9549) X-BeenThere: sisyphus-cybertalk@lists.altlinux.org X-Mailman-Version: 2.1.12 Precedence: list Reply-To: devel@lists.altlinux.org List-Id: ALT Linux Sisyphus cybertalk List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 14 Sep 2012 01:36:06 -0000 Archived-At: List-Archive: 5 REMOVED packages firefox-fireftp 0.97.1-alt1 firefox-fireget 0.6-alt4 firefox-settings-kdesktop 5.0-alt4.M51.1 thunderbird-contactssidebar 0.7-alt1 thunderbird-quotecolors 0.2.8-alt1 11 UPDATED packages firefox - The Mozilla Firefox project is a redesign of Mozilla's browser [57M] * Wed Sep 12 2012 Andrey Cherepanov 10.0.7-alt0.M50P.1 - New ESR version 10.0.7 * Wed Sep 12 2012 Andrey Cherepanov 10.0.7-alt0.M60P.1 - New ESR version 10.0.7 - Fixed: + MFSA 2012-72 Web console eval capable of executing chrome-privileged code + MFSA 2012-70 Location object security checks bypassed by chrome code + MFSA 2012-69 Incorrect site SSL certificate data display + MFSA 2012-67 Installer will launch incorrect executable following new installation + MFSA 2012-65 Out-of-bounds read in format-number in XSLT + MFSA 2012-63 SVG buffer overflow and use-after-free issues + MFSA 2012-62 WebGL use-after-free and memory corruption + MFSA 2012-61 Memory corruption with bitmap format images with negative height + MFSA 2012-58 Use-after-free issues found using Address Sanitizer + MFSA 2012-57 Miscellaneous memory safety hazards (rv:15.0/ rv:10.0.7) * Sun Aug 19 2012 Andrey Cherepanov 10.0.6-alt0.M60P.1 - New ESR version 10.0.6 - Fixed: + MFSA 2012-56 Code execution through javascript: URLs + MFSA 2012-55 feed: URLs with an innerURI inherit security context of page + MFSA 2012-54 Clickjacking of certificate warning page + MFSA 2012-53 Content Security Policy 1.0 implementation errors cause data leakage + MFSA 2012-52 JSDependentString::undepend string conversion results in memory corruption + MFSA 2012-51 X-Frame-Options header ignored when duplicated + MFSA 2012-49 Same-compartment Security Wrappers can be bypassed + MFSA 2012-48 use-after-free in nsGlobalWindow::PageHidden + MFSA 2012-47 Improper filtering of javascript in HTML feed-view + MFSA 2012-46 XSS through data: URLs + MFSA 2012-45 Spoofing issue with location + MFSA 2012-44 Gecko memory corruption + MFSA 2012-43 Incorrect URL displayed in addressbar through drag and drop + MFSA 2012-42 Miscellaneous memory safety hazards (rv:14.0/ rv:10.0.6) * Thu Jun 21 2012 Andrey Cherepanov 10.0.5-alt0.M60P.1 - New ESR version 10.0.5 - Fixed: + MFSA 2012-40 Buffer overflow and use-after-free issues found using Address Sanitizer + MFSA 2012-39 NSS parsing errors with zero length items + MFSA 2012-38 Use-after-free while replacing/inserting a node in a document + MFSA 2012-37 Information disclosure though Windows file shares and shortcut files + MFSA 2012-36 Content Security Policy inline-script bypass + MFSA 2012-34 Miscellaneous memory safety hazards * Tue Apr 24 2012 Andrey Cherepanov 10.0.3-alt0.M60P.1 - Version 10.0.3 with security fixes * Thu Mar 01 2012 Andrey Cherepanov 10.0.2-alt0.M60P.1 - Backport to p6 branch (new version with security fixes) - Fixed: + MFSA 2012-11 libpng integer overflow + MFSA 2012-10 use after free in nsXBLDocumentInfo::ReadPrototypeBindings + MFSA 2012-09 Firefox Recovery Key.html is saved with unsafe permission + MFSA 2012-08 Crash with malformed embedded XSLT stylesheets + MFSA 2012-07 Potential Memory Corruption When Decoding Ogg Vorbis files + MFSA 2012-06 Uninitialized memory appended when encoding icon images may cause information disclosure + MFSA 2012-05 Frame scripts calling into untrusted objects bypass security checks + MFSA 2012-04 Child nodes from nsDOMAttribute still accessible after removal of nodes + MFSA 2012-03