summaryrefslogtreecommitdiff
path: root/www/firefox78
AgeCommit message (Collapse)AuthorFilesLines
2022-08-04Remove firefox78. This was kept due to better NetBSD WebRTC support thannia54-7904/+0
firefox91, but webrtc video calls are absolutely perfect with sunaudio in firefox102 and newer.
2022-07-06mozilla packages based on firefox78 are incompatible with python 3.10nia1-2/+2
due to a change to the collections library. Right now commit a workaround until a proper fix appears.
2022-07-02*: Recursive revbump from audio/pulseaudioryoon1-2/+2
2022-06-28*: recursive bump for perl 5.36wiz1-2/+2
2022-05-05firefox*: Use OPSYS_VERSION to numerically compare NetBSD versionsnia1-2/+2
2022-04-18revbump for textproc/icu updateadam1-2/+2
2022-03-28{s,t,w}*/*: revbump(1) for libsndfiletnn1-2/+2
2022-01-26tor-browser: use python 3.9 or older for buildingwiz1-2/+2
the next version will support 3.10 (Only relevant if you set your default to python 3.10)
2021-12-28firefox78: restore deleted packagenia53-0/+7693
This is the last version of Firefox where microphone input isn't broken on NetBSD, see PR pkg/56587
2021-11-13Restore firefox78 mozilla-common.mk - needed by thunderbird.nia1-0/+211
Sorry, everyone.
2021-11-13www: Remove firefox78 - out of supportnia54-7904/+0
2021-10-26www: Replace RMD160 checksums with BLAKE2s checksumsnia1-2/+2
All checksums have been double-checked against existing RMD160 and SHA512 hashes Not committed (merge conflicts): www/nghttp2/distinfo Unfetchable distfiles (almost certainly fetched conditionally...): ./www/nginx-devel/distinfo array-var-nginx-module-0.05.tar.gz ./www/nginx-devel/distinfo echo-nginx-module-0.62.tar.gz ./www/nginx-devel/distinfo encrypted-session-nginx-module-0.08.tar.gz ./www/nginx-devel/distinfo form-input-nginx-module-0.12.tar.gz ./www/nginx-devel/distinfo headers-more-nginx-module-0.33.tar.gz ./www/nginx-devel/distinfo lua-nginx-module-0.10.19.tar.gz ./www/nginx-devel/distinfo naxsi-1.3.tar.gz ./www/nginx-devel/distinfo nginx-dav-ext-module-3.0.0.tar.gz ./www/nginx-devel/distinfo nginx-rtmp-module-1.2.2.tar.gz ./www/nginx-devel/distinfo nginx_http_push_module-1.2.10.tar.gz ./www/nginx-devel/distinfo ngx_cache_purge-2.5.1.tar.gz ./www/nginx-devel/distinfo ngx_devel_kit-0.3.1.tar.gz ./www/nginx-devel/distinfo ngx_http_geoip2_module-3.3.tar.gz ./www/nginx-devel/distinfo njs-0.5.0.tar.gz ./www/nginx-devel/distinfo set-misc-nginx-module-0.32.tar.gz ./www/nginx/distinfo array-var-nginx-module-0.05.tar.gz ./www/nginx/distinfo echo-nginx-module-0.62.tar.gz ./www/nginx/distinfo encrypted-session-nginx-module-0.08.tar.gz ./www/nginx/distinfo form-input-nginx-module-0.12.tar.gz ./www/nginx/distinfo headers-more-nginx-module-0.33.tar.gz ./www/nginx/distinfo lua-nginx-module-0.10.19.tar.gz ./www/nginx/distinfo naxsi-1.3.tar.gz ./www/nginx/distinfo nginx-dav-ext-module-3.0.0.tar.gz ./www/nginx/distinfo nginx-rtmp-module-1.2.2.tar.gz ./www/nginx/distinfo nginx_http_push_module-1.2.10.tar.gz ./www/nginx/distinfo ngx_cache_purge-2.5.1.tar.gz ./www/nginx/distinfo ngx_devel_kit-0.3.1.tar.gz ./www/nginx/distinfo ngx_http_geoip2_module-3.3.tar.gz ./www/nginx/distinfo njs-0.5.0.tar.gz ./www/nginx/distinfo set-misc-nginx-module-0.32.tar.gz
2021-10-09Recursive revbump for multimedia/libaomnia1-1/+2
2021-10-08firefox78-l10n: update to 78.15.0nia3-10/+9
Security Vulnerabilities fixed in Firefox ESR 78.15 #CVE-2021-38496: Use-after-free in MessageTask #CVE-2021-38500: Memory safety bugs fixed in Firefox 93, Firefox ESR 78.15, and Firefox ESR 91.2
2021-10-07www: Remove SHA1 hashes for distfilesnia1-2/+1
2021-09-22firefox*: remove unhelpful workaround for netbsd-8nia1-14/+1
2021-09-16firefox78: Install various icon sizes. Explicitly use "unofficial" branding.nia3-10/+25
Bump PKGREVISION.
2021-09-10firefox78: update to 78.14.0nia2-7/+7
Fixes CVE-2021-38493
2021-09-02firefox[68,78]: Add workarounds for NetBSD/i386nia1-2/+9
2021-08-13firefox78: Update to 78.13.0ryoon2-8/+7
Changelog: Various stability, functionality, and security fixes Security fixes: #CVE-2021-29986: Race condition when resolving DNS names could have led to memory corruption #CVE-2021-29988: Memory corruption as a result of incorrect style treatment #CVE-2021-29984: Incorrect instruction reordering during JIT optimization #CVE-2021-29980: Uninitialized memory in a canvas object could have led to memory corruption #CVE-2021-29985: Use-after-free media channels #CVE-2021-29989: Memory safety bugs fixed in Firefox 91 and Firefox ESR 78.13
2021-07-30*: Recursive revbump from audio/pulseaudio-15.0ryoon1-1/+2
2021-07-15firefox78: update to 78.12.0nia2-7/+7
Security Vulnerabilities fixed in Firefox ESR 78.12 #CVE-2021-29970: Use-after-free in accessibility features of a document #CVE-2021-30547: Out of bounds write in ANGLE #CVE-2021-29976: Memory safety bugs fixed in Firefox 90 and Firefox ESR 78.12
2021-06-18firefox78: explicitly use autoconf-2.13nia1-3/+3
2021-06-01firefox78: update to 78.11.0nia3-11/+11
Security fixes: https://www.mozilla.org/en-US/security/advisories/mfsa2021-24/
2021-05-24*: recursive bump for perl 5.34wiz1-1/+2
2021-05-07firefox78: Remove PKGREVISION after updateryoon1-2/+1
2021-05-07firefox78: Update to 78.10.1ryoon2-7/+7
Changelog: Version 78.10.1, first offered to ESR channel users on May 4, 2021 Fixed * Resolved an issue caused by a recent Widevine plugin update which prevented some purchased video content from playing correctly (bug 1705138) * Security fix Security fixes: #CVE-2021-29951: Mozilla Maintenance Service could have been started or stopped by domain users
2021-04-21revbump for textproc/icuadam1-1/+2
2021-04-19firefox78: update to 78.10.0nia2-8/+7
security fixes: https://www.mozilla.org/en-US/security/advisories/mfsa2021-15/
2021-04-15*: Recursive revbump from devel/nssryoon1-2/+2
2021-04-09*: bump PKGREVISION for nss linking fixwiz1-1/+2
2021-03-24firefox78: Update to 78.9.0ryoon2-7/+7
Changelog: Security fixes: #CVE-2021-23981: Texture upload into an unbound backing buffer resulted in an out-of-bound read #CVE-2021-23982: Internal network hosts could have been probed by a malicious webpage #CVE-2021-23984: Malicious extensions could have spoofed popup information #CVE-2021-23987: Memory safety bugs fixed in Firefox 87 and Firefox ESR 78.9
2021-03-09*: remove unneeded patch after nss header install location changewiz2-12/+3
2021-02-24firefox78: Update to 78.8.0nia2-9/+8
Security Vulnerabilities fixed in Firefox ESR 78.8 #CVE-2021-23969: Content Security Policy violation report could have contained the destination of a redirect #CVE-2021-23968: Content Security Policy violation report could have contained the destination of a redirect #CVE-2021-23973: MediaError message property could have leaked information about cross-origin resources #CVE-2021-23978: Memory safety bugs fixed in Firefox 86 and Firefox ESR 78.8
2021-02-07*: Recursive revbump from audio/pulseaudio-14.2.nb1ryoon1-1/+2
2021-02-06firefox78: Update to 78.7.1ryoon2-7/+7
Changelog: Fixed Security fix Prevent access to NTFS special paths that could lead to filesystem corruption. Security fix: #MOZ-2021-0001: Buffer overflow in depth pitch calculations for compressed textures
2021-01-27firefox78: Update to 78.7.0nia4-11/+12
changes: https://www.mozilla.org/en-US/security/advisories/mfsa2021-04/
2021-01-19firefox(78): set GCC_REQDnia1-1/+4
2021-01-08firefox78: Update to 78.6.1ryoon3-37/+7
Changelog: * Fix: Fixed a crash during video playback on Apple Silicon devices (bug 1683579) * Secrity fix: #CVE-2020-16044: Use-after-free write when handling a malicious COOKIE-ECHO SCTP chunk
2021-01-01firefox78: Fix build with devel/cbindgen-0.16.0ryoon2-1/+30
2021-01-01*: Recursive revbump from audio/pulseaudio-14.0ryoon1-1/+2
2020-12-31Normalize handling packages that require 64-bit atomic ops.nia1-8/+2
2020-12-26Remove now-actively-harmful 32-bit ARM hack from Mozilla packages.nia1-4/+1
2020-12-17firefox78: Update to 78.6.0nia2-7/+7
Security Vulnerabilities fixed in Firefox ESR 78.6 #CVE-2020-16042: Operations on a BigInt could have caused uninitialized memory to be exposed #CVE-2020-26971: Heap buffer overflow in WebGL #CVE-2020-26973: CSS Sanitizer performed incorrect sanitization #CVE-2020-26974: Incorrect cast of StyleGenericFlexBasis resulted in a heap use-after-free #CVE-2020-26978: Internal network hosts could have been probed by a malicious webpage #CVE-2020-35111: The proxy.onRequest API did not catch view-source URLs #CVE-2020-35112: Opening an extension-less download may have inadvertently launched an executable instead #CVE-2020-35113: Memory safety bugs fixed in Firefox 84 and Firefox ESR 78.6
2020-11-18www/firefox*: Use -Og for debug option and -O2 for debug-info option.riastradh1-3/+3
2020-11-18firefox78: Update to 78.5.0nia2-9/+8
Security Vulnerabilities fixed in Firefox ESR 78.5 #CVE-2020-26951: Parsing mismatches could confuse and bypass security sanitizer for chrome privileged code #CVE-2020-16012: Variable time processing of cross-origin images during drawImage calls #CVE-2020-26953: Fullscreen could be enabled without displaying the security UI #CVE-2020-26956: XSS through paste (manual and clipboard API) #CVE-2020-26958: Requests intercepted through ServiceWorkers lacked MIME type restrictions #CVE-2020-26959: Use-after-free in WebRequestService #CVE-2020-26960: Potential use-after-free in uses of nsTArray #CVE-2020-15999: Heap buffer overflow in freetype #CVE-2020-26961: DoH did not filter IPv4 mapped IP Addresses #CVE-2020-26965: Software keyboards may have remembered typed passwords #CVE-2020-26966: Single-word search queries were also broadcast to local network #CVE-2020-26968: Memory safety bugs fixed in Firefox 83 and Firefox ESR 78.5
2020-11-16firefox78: Needs py-expat to build (sometimes?)nia1-1/+2
Reported by Riastradh
2020-11-12firefox*: DLL_SUFFIX no longer used in PLISTnia1-9/+1
2020-11-11firefox78: one INSTALLATION_DIRS line per dirwiz1-2/+4
for easier syncing with other packages
2020-11-11firefox78: Honor user's compiler choice again, don't require Python 2.nia2-40/+21
The python 2 dependency was seemingly removed in Firefox 78.0 so we can remove those old hacks. Firefox needs clang for some unknown part of the build process (rust related?), even if building with GCC. The previous solution in pkgsrc was to force the use of clang, because pkgsrc provides cwrappers which provided gcc-as-clang, which broke everything. Instead, override the clang wrapper with the actual clang executable. This means the majority of the build happens with GCC (or ccache, distcc, whatever the user chooses, rather than overriding it with clang). Should help sparc64, where clang doesn't work too well. Full build tested on NetBSD/amd64.