diff options
author | salo <salo@pkgsrc.org> | 2007-08-02 22:42:51 +0000 |
---|---|---|
committer | salo <salo@pkgsrc.org> | 2007-08-02 22:42:51 +0000 |
commit | 3f6b4255736358c2b52d94e6e3c070bb578cc4ad (patch) | |
tree | cbd6aef947b2e29867f6bf4b4954d07d9587ccf3 | |
parent | 435174081b768ae463a2507551cd32e591270a76 (diff) | |
download | pkgsrc-3f6b4255736358c2b52d94e6e3c070bb578cc4ad.tar.gz |
Pullup ticket 2154 - requested by ghen
security update for firefox
Revisions pulled up:
- pkgsrc/www/firefox/Makefile-firefox.common 1.46, 1.47
- pkgsrc/www/firefox/PLIST 1.28
- pkgsrc/www/firefox/distinfo 1.67, 1.68
- pkgsrc/www/firefox/patches/patch-cn 1.5
- pkgsrc/www/firefox-gtk1/PLIST 1.15
- pkgsrc/www/firefox-bin/Makefile 1.30, 1.32
- pkgsrc/www/firefox-bin/distinfo 1.27, 1.29
- pkgsrc/www/firefox15-bin/DESCR 1.3
- pkgsrc/www/firefox15-gtk1/DESCR 1.3
- pkgsrc/www/firefox15/DESCR 1.3
Module Name: pkgsrc
Committed By: xtraeme
Date: Thu Jul 19 18:20:59 UTC 2007
Modified Files:
pkgsrc/www/firefox-bin: Makefile distinfo
Log Message:
Update to 2.0.0.5:
MFSA 2007-25 XPCNativeWrapper pollution
MFSA 2007-24 Unauthorized access to wyciwyg:// documents
MFSA 2007-23 Remote code execution by launching Firefox from
Internet Explorer
MFSA 2007-22 File type confusion due to %00 in name
MFSA 2007-21 Privilege escalation using an event handler attached to an
element not in the document
MFSA 2007-20 Frame spoofing while window is loading
MFSA 2007-19 XSS using addEventListener and setTimeout
MFSA 2007-18 Crashes with evidence of memory corruption
---
Module Name: pkgsrc
Committed By: ghen
Date: Thu Jul 26 08:43:51 UTC 2007
Modified Files:
pkgsrc/www/firefox: Makefile-firefox.common PLIST distinfo
pkgsrc/www/firefox-gtk1: PLIST
pkgsrc/www/firefox/patches: patch-cn
Log Message:
Update firefox, firefox-bin and firefox-gtk1 to 2.0.0.5.
Security fixes in this version:
MFSA 2007-25 XPCNativeWrapper pollution
MFSA 2007-24 Unauthorized access to wyciwyg:// documents
MFSA 2007-23 Remote code execution by launching Firefox from Internet
Explorer
MFSA 2007-22 File type confusion due to %00 in name
MFSA 2007-21 Privilege escalation using an event handler attached to an
element not in the document
MFSA 2007-20 Frame spoofing while window is loading
MFSA 2007-19 XSS using addEventListener and setTimeout
MFSA 2007-18 Crashes with evidence of memory corruption
For more info, see http://www.mozilla.com/en-US/firefox/2.0.0.5/releasenotes/
---
Module Name: pkgsrc
Committed By: ghen
Date: Tue Jul 31 10:06:48 UTC 2007
Modified Files:
pkgsrc/www/firefox: Makefile-firefox.common distinfo
pkgsrc/www/firefox-bin: Makefile distinfo
Log Message:
Update firefox, firefox-bin and firefox-gtk1 to 2.0.0.6.
Security fixes in this version:
MFSA 2007-27 Unescaped URIs passed to external programs
MFSA 2007-26 Privilege escalation through chrome-loaded about:blank windows
For more info, see http://www.mozilla.com/en-US/firefox/2.0.0.6/releasenotes/
---
Module Name: pkgsrc
Committed By: ghen
Date: Thu Jul 26 08:47:36 UTC 2007
Modified Files:
pkgsrc/www/firefox15: DESCR
pkgsrc/www/firefox15-bin: DESCR
pkgsrc/www/firefox15-gtk1: DESCR
Log Message:
Firefox 1.5.0.x has been EOL'd.
-rw-r--r-- | www/firefox-bin/Makefile | 4 | ||||
-rw-r--r-- | www/firefox-bin/distinfo | 8 | ||||
-rw-r--r-- | www/firefox-gtk1/PLIST | 4 | ||||
-rw-r--r-- | www/firefox/Makefile-firefox.common | 4 | ||||
-rw-r--r-- | www/firefox/PLIST | 4 | ||||
-rw-r--r-- | www/firefox/distinfo | 10 | ||||
-rw-r--r-- | www/firefox/patches/patch-cn | 6 | ||||
-rw-r--r-- | www/firefox15-bin/DESCR | 5 | ||||
-rw-r--r-- | www/firefox15-gtk1/DESCR | 5 | ||||
-rw-r--r-- | www/firefox15/DESCR | 5 |
10 files changed, 28 insertions, 27 deletions
diff --git a/www/firefox-bin/Makefile b/www/firefox-bin/Makefile index ce32a1ffbf3..cba1f81bf2d 100644 --- a/www/firefox-bin/Makefile +++ b/www/firefox-bin/Makefile @@ -1,7 +1,7 @@ -# $NetBSD: Makefile,v 1.29 2007/05/31 07:25:09 ghen Exp $ +# $NetBSD: Makefile,v 1.29.2.1 2007/08/02 22:42:52 salo Exp $ MOZILLA= firefox -MOZ_VER= 2.0.0.4 +MOZ_VER= 2.0.0.6 MOZ_DISTVER= ${MOZ_VER} HOMEPAGE= http://www.mozilla.com/en-US/firefox/ diff --git a/www/firefox-bin/distinfo b/www/firefox-bin/distinfo index 59709c0c5c0..2b75c958cfe 100644 --- a/www/firefox-bin/distinfo +++ b/www/firefox-bin/distinfo @@ -1,5 +1,5 @@ -$NetBSD: distinfo,v 1.26 2007/05/31 07:25:09 ghen Exp $ +$NetBSD: distinfo,v 1.26.2.1 2007/08/02 22:42:52 salo Exp $ -SHA1 (firefox/releases/2.0.0.4/linux-i686/en-US/firefox-2.0.0.4.tar.gz) = d77aca927ea915f287677e8a29488a1e9c48f9a8 -RMD160 (firefox/releases/2.0.0.4/linux-i686/en-US/firefox-2.0.0.4.tar.gz) = b8f1a5d78cdbff38f499a94ccc97498b0dc40abd -Size (firefox/releases/2.0.0.4/linux-i686/en-US/firefox-2.0.0.4.tar.gz) = 9655661 bytes +SHA1 (firefox/releases/2.0.0.6/linux-i686/en-US/firefox-2.0.0.6.tar.gz) = 02b6a9dcba33f841cf089a1c7961615960512545 +RMD160 (firefox/releases/2.0.0.6/linux-i686/en-US/firefox-2.0.0.6.tar.gz) = 8cad47d2fa04098762a215c14fbc1f91364b2f0c +Size (firefox/releases/2.0.0.6/linux-i686/en-US/firefox-2.0.0.6.tar.gz) = 9671806 bytes diff --git a/www/firefox-gtk1/PLIST b/www/firefox-gtk1/PLIST index b6a50780744..1700ae2caa9 100644 --- a/www/firefox-gtk1/PLIST +++ b/www/firefox-gtk1/PLIST @@ -1,4 +1,4 @@ -@comment $NetBSD: PLIST,v 1.14 2007/05/31 07:25:10 ghen Exp $ +@comment $NetBSD: PLIST,v 1.14.2.1 2007/08/02 22:42:52 salo Exp $ bin/${MOZILLA} @comment begin PROGRAMS lib/${MOZILLA}/${MOZILLA_BIN} @@ -1982,6 +1982,7 @@ include/${MOZILLA}/string/string-template-undef.h include/${MOZILLA}/toolkitcomps/nsICommandLine.h include/${MOZILLA}/toolkitcomps/nsICommandLineHandler.h include/${MOZILLA}/toolkitcomps/nsICommandLineRunner.h +include/${MOZILLA}/toolkitcomps/nsICommandLineValidator.h include/${MOZILLA}/toolkitcomps/nsIRemoteService.h include/${MOZILLA}/toolkitcomps/nsToolkitCompsCID.h include/${MOZILLA}/transformiix/nsIXFormsUtilityService.h @@ -2259,6 +2260,7 @@ include/${MOZILLA}/xpcom/nsIEnumerator.h include/${MOZILLA}/xpcom/nsIEnvironment.h include/${MOZILLA}/xpcom/nsIErrorService.h include/${MOZILLA}/xpcom/nsIEventQueue.h +include/${MOZILLA}/xpcom/nsIEventQueueListener.h include/${MOZILLA}/xpcom/nsIEventQueueService.h include/${MOZILLA}/xpcom/nsIEventTarget.h include/${MOZILLA}/xpcom/nsIException.h diff --git a/www/firefox/Makefile-firefox.common b/www/firefox/Makefile-firefox.common index 084acd7c7da..ba52c12c9e2 100644 --- a/www/firefox/Makefile-firefox.common +++ b/www/firefox/Makefile-firefox.common @@ -1,7 +1,7 @@ -# $NetBSD: Makefile-firefox.common,v 1.45 2007/06/16 01:14:48 dmcmahill Exp $ +# $NetBSD: Makefile-firefox.common,v 1.45.2.1 2007/08/02 22:42:51 salo Exp $ MOZILLA_BIN= firefox-bin -MOZ_VER= 2.0.0.4 +MOZ_VER= 2.0.0.6 EXTRACT_SUFX= .tar.bz2 DISTNAME= firefox-${MOZ_VER}-source diff --git a/www/firefox/PLIST b/www/firefox/PLIST index 355dfb6c78e..381b9f111c8 100644 --- a/www/firefox/PLIST +++ b/www/firefox/PLIST @@ -1,4 +1,4 @@ -@comment $NetBSD: PLIST,v 1.27 2007/05/31 07:25:08 ghen Exp $ +@comment $NetBSD: PLIST,v 1.27.2.1 2007/08/02 22:42:51 salo Exp $ bin/${MOZILLA} @comment begin PROGRAMS lib/${MOZILLA}/${MOZILLA_BIN} @@ -1999,6 +1999,7 @@ include/${MOZILLA}/system-pref/nsSystemPrefService.h include/${MOZILLA}/toolkitcomps/nsICommandLine.h include/${MOZILLA}/toolkitcomps/nsICommandLineHandler.h include/${MOZILLA}/toolkitcomps/nsICommandLineRunner.h +include/${MOZILLA}/toolkitcomps/nsICommandLineValidator.h include/${MOZILLA}/toolkitcomps/nsIRemoteService.h include/${MOZILLA}/toolkitcomps/nsToolkitCompsCID.h include/${MOZILLA}/transformiix/nsIXFormsUtilityService.h @@ -2275,6 +2276,7 @@ include/${MOZILLA}/xpcom/nsIEnumerator.h include/${MOZILLA}/xpcom/nsIEnvironment.h include/${MOZILLA}/xpcom/nsIErrorService.h include/${MOZILLA}/xpcom/nsIEventQueue.h +include/${MOZILLA}/xpcom/nsIEventQueueListener.h include/${MOZILLA}/xpcom/nsIEventQueueService.h include/${MOZILLA}/xpcom/nsIEventTarget.h include/${MOZILLA}/xpcom/nsIException.h diff --git a/www/firefox/distinfo b/www/firefox/distinfo index 43139f6ffd7..4e074db3abd 100644 --- a/www/firefox/distinfo +++ b/www/firefox/distinfo @@ -1,8 +1,8 @@ -$NetBSD: distinfo,v 1.66 2007/05/31 07:25:08 ghen Exp $ +$NetBSD: distinfo,v 1.66.2.1 2007/08/02 22:42:51 salo Exp $ -SHA1 (firefox-2.0.0.4-source.tar.bz2) = 655ce5d1e6addee8fdb8f5f07aee7cbf3e86dd1b -RMD160 (firefox-2.0.0.4-source.tar.bz2) = ee6d5bcfb68984bd062457f56f0652f4870697bc -Size (firefox-2.0.0.4-source.tar.bz2) = 37321839 bytes +SHA1 (firefox-2.0.0.6-source.tar.bz2) = eb72f55e4a8bf08e8c6ef227c0ade3d068ba1082 +RMD160 (firefox-2.0.0.6-source.tar.bz2) = 5132a3b88de5416df27cdf9b9a64bec9dc42fffa +Size (firefox-2.0.0.6-source.tar.bz2) = 37392782 bytes SHA1 (patch-aa) = 5095449d4e979085fc5791b9d0251076b9c969c3 SHA1 (patch-ab) = 19069a4e572744eccb04e9906e16dad28d2dac01 SHA1 (patch-ac) = 3f28e27c100655aca4daaca02a77a76064359e94 @@ -43,7 +43,7 @@ SHA1 (patch-cj) = 3ae48c9a906f47cf32706a1d2b3b6b44918e99f4 SHA1 (patch-ck) = 18e6c412399c8b5b89941d818cf2589711f35472 SHA1 (patch-cl) = a08ba37aa7ac7806123aa21b6ff8055c6ded6449 SHA1 (patch-cm) = 7da6e9da803407b25bf4b707562777e8429a37a4 -SHA1 (patch-cn) = d1e476da65e7cdd824df5ac4f9aa026163e4b114 +SHA1 (patch-cn) = dbee403dbe19cb48eff2079f92c8e6a7a94534c4 SHA1 (patch-da) = 356e37429832ffd296fa79b9aa7ef20c05d851e0 SHA1 (patch-db) = f10187cf9de4466e49a967b79875eb01c5afd69f SHA1 (patch-dc) = ba7b06f04460d4966e115a9ffdeafc1ebf555972 diff --git a/www/firefox/patches/patch-cn b/www/firefox/patches/patch-cn index 1005f0d1303..549f42ade57 100644 --- a/www/firefox/patches/patch-cn +++ b/www/firefox/patches/patch-cn @@ -1,6 +1,6 @@ -$NetBSD: patch-cn,v 1.4 2007/05/31 07:25:09 ghen Exp $ +$NetBSD: patch-cn,v 1.4.2.1 2007/08/02 22:42:52 salo Exp $ ---- extensions/transformiix/source/xpath/XFormsFunctionCall.cpp.orig 2007-04-27 03:08:49.000000000 +0200 +--- extensions/transformiix/source/xpath/XFormsFunctionCall.cpp.orig 2007-06-24 02:00:32.000000000 +0200 +++ extensions/transformiix/source/xpath/XFormsFunctionCall.cpp @@ -104,7 +104,7 @@ XFormsFunctionCall::evaluate(txIEvalCont res = (res/i); @@ -26,7 +26,7 @@ $NetBSD: patch-cn,v 1.4 2007/05/31 07:25:09 ghen Exp $ PRInt32 index = 0; - double res = Double::NaN; + double res = Double::NaN(); - rv = xformsService->GetRepeatIndexById(mResolverNode, indexId, &index); + rv = xformsService->GetRepeatIndexById(mNode, indexId, &index); NS_ENSURE_SUCCESS(rv, rv); @@ -344,7 +344,7 @@ XFormsFunctionCall::evaluate(txIEvalCont diff --git a/www/firefox15-bin/DESCR b/www/firefox15-bin/DESCR index 0e7c2afbd87..05d211278c5 100644 --- a/www/firefox15-bin/DESCR +++ b/www/firefox15-bin/DESCR @@ -8,6 +8,5 @@ Firefox also offers excellent bookmark and history management, and it can be extended by developers using industry standards such as XML, CSS, JavaScript, C++, etc. Many extensions are available. -Note: Firefox 1.5.0.x will be maintained with security and stability -updates until June 2007. All users are strongly encouraged to upgrade -to Firefox 2. +Note: Mozilla ceased supporting Firefox 1.5.0.x in May 2007. All users +are strongly encouraged to upgrade to Firefox 2 (see www/firefox-bin). diff --git a/www/firefox15-gtk1/DESCR b/www/firefox15-gtk1/DESCR index e502862b63b..6af87b403bc 100644 --- a/www/firefox15-gtk1/DESCR +++ b/www/firefox15-gtk1/DESCR @@ -8,8 +8,7 @@ Firefox also offers excellent bookmark and history management, and it can be extended by developers using industry standards such as XML, CSS, JavaScript, C++, etc. Many extensions are available. -Note: Firefox 1.5.0.x will be maintained with security and stability -updates until June 2007. All users are strongly encouraged to upgrade -to Firefox 2. +Note: Mozilla ceased supporting Firefox 1.5.0.x in May 2007. All users +are strongly encouraged to upgrade to Firefox 2 (see www/firefox-gtk1). firefox-gtk1 uses GTK+-1.x widgets. diff --git a/www/firefox15/DESCR b/www/firefox15/DESCR index 0e7c2afbd87..b29c5b214ee 100644 --- a/www/firefox15/DESCR +++ b/www/firefox15/DESCR @@ -8,6 +8,5 @@ Firefox also offers excellent bookmark and history management, and it can be extended by developers using industry standards such as XML, CSS, JavaScript, C++, etc. Many extensions are available. -Note: Firefox 1.5.0.x will be maintained with security and stability -updates until June 2007. All users are strongly encouraged to upgrade -to Firefox 2. +Note: Mozilla ceased supporting Firefox 1.5.0.x in May 2007. All users +are strongly encouraged to upgrade to Firefox 2 (see www/firefox). |