Пакет firefox-esr: Информация

Исходный пакет: firefox-esr
Версия: 102.8.0-alt1
Собран:  15 марта 2023 г. 2:19 в задании #316239
Категория: Сети/WWW
Сообщить об ошибке в пакете
Домашняя страница: http://www.mozilla.org/projects/firefox/

Лицензия: MPL-2.0
О пакете: The Mozilla Firefox project is a redesign of Mozilla's browser (ESR version)
Описание: 
The Mozilla Firefox project is a redesign of Mozilla's browser component,
written using the XUL user interface language and designed to be
cross-platform.

Список rpm-пакетов, предоставляемых данным srpm-пакетом:
firefox-esr (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-config-privacy (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-wayland (x86_64, ppc64le, i586, armh, aarch64)

Сопровождающий: Andrey Cherepanov


    1. mozilla-common-devel
    2. python3-base
    3. nasm
    4. /dev/shm
    5. node
    6. browser-plugins-npapi-devel
    7. bzlib-devel
    8. libopus-devel
    9. chrpath
    10. python3-module-pip
    11. clang12.0
    12. clang12.0-devel
    13. /proc
    14. python3-module-setuptools
    15. python3-modules-sqlite3
    16. libpixman-devel
    17. libcairo-devel
    18. libX11-devel
    19. libcurl-devel
    20. libXScrnSaver-devel
    21. libXcomposite-devel
    22. libXcursor-devel
    23. libproxy-devel
    24. libXdamage-devel
    25. libXext-devel
    26. libXft-devel
    27. libXi-devel
    28. libXt-devel
    29. alternatives
    30. libalsa-devel
    31. libpulseaudio-devel
    32. libaom-devel
    33. autoconf_2.13
    34. autoconf_2.13
    35. libdav1d-devel
    36. libdbus-devel
    37. libdbus-glib-devel
    38. libdrm-devel
    39. gst-plugins1.0-devel
    40. pkgconfig(alsa)
    41. pkgconfig(aom)
    42. fontconfig-devel
    43. pkgconfig(bzip2)
    44. pkgconfig(cairo)
    45. gstreamer1.0-devel
    46. pkgconfig(dav1d)
    47. pkgconfig(dbus-1)
    48. pkgconfig(dbus-glib-1)
    49. pkgconfig(dri)
    50. pkgconfig(fontconfig)
    51. pkgconfig(freetype2)
    52. pkgconfig(gio-2.0)
    53. rpm-build-mozilla.org
    54. libevent-devel
    55. pkgconfig(graphite2)
    56. pkgconfig(gtk+-2.0)
    57. pkgconfig(gtk+-3.0)
    58. pkgconfig(harfbuzz)
    59. pkgconfig(hunspell)
    60. pkgconfig(icu-i18n)
    61. libffi-devel
    62. pkgconfig(libcurl)
    63. pkgconfig(libdrm)
    64. rpm-macros-alternatives
    65. pkgconfig(libevent)
    66. pkgconfig(libffi)
    67. libshell
    68. pkgconfig(libjpeg)
    69. pkgconfig(libnotify)
    70. pkgconfig(libproxy-1.0)
    71. pkgconfig(libpulse)
    72. pkgconfig(libstartup-notification-1.0)
    73. pkgconfig(nspr) >= 4.33
    74. pkgconfig(nss) >= 3.72
    75. pkgconfig(opus)
    76. pkgconfig(pixman-1)
    77. pkgconfig(vpx)
    78. pkgconfig(x11)
    79. libfreetype-devel
    80. pkgconfig(xcomposite)
    81. pkgconfig(xcursor)
    82. pkgconfig(xdamage)
    83. pkgconfig(xext)
    84. pkgconfig(xft)
    85. pkgconfig(xi)
    86. pkgconfig(xkbcommon)
    87. pkgconfig(xrandr)
    88. pkgconfig(xscrnsaver)
    89. pkgconfig(xt)
    90. pkgconfig(xtst)
    91. pkgconfig(zlib)
    92. libstartup-notification-devel
    93. libstdc++-devel
    94. libgio-devel
    95. libgtk+2-devel
    96. libgtk+3-devel
    97. python-module-setuptools
    98. python-modules-compiler
    99. python-modules-json
    100. python-modules-logging
    101. python-modules-sqlite3
    102. libhunspell-devel
    103. libjpeg-devel
    104. rust >= 1.60.0
    105. rust-cargo >= 1.60.0
    106. libnss-devel-static
    107. libnotify-devel
    108. unzip
    109. xorg-cf-files
    110. libGL-devel
    111. libxkbcommon-devel
    112. yasm
    113. libvpx-devel
    114. zip
    115. lld12.0-devel
    116. zlib-devel
    117. llvm12.0-devel
    118. libwireless-devel

Последнее изменение


3 марта 2023 г. Pavel Vasenkov 102.8.0-alt1
- New ESR version.
- Security fixes
  + CVE-2023-25728 Content security policy leak in violation reports using iframes
  + CVE-2023-25730 Screen hijack via browser fullscreen mode
  + CVE-2023-0767 Arbitrary memory write via PKCS 12 in NSS
  + CVE-2023-25735 Potential use-after-free from compartment mismatch in SpiderMonkey
  + CVE-2023-25737 Invalid downcast in SVGUtils::SetupStrokeGeometry
  + CVE-2023-25738 Printing on Windows could potentially crash Firefox with some device drivers
  + CVE-2023-25739 Use-after-free in mozilla::dom::ScriptLoadContext::~ScriptLoadContext
  + CVE-2023-25729 Extensions could have opened external schemes without user knowledge
  + CVE-2023-25732 Out of bounds memory write from EncodeInputStream
  + CVE-2023-25734 Opening local .url files could cause unexpected network loads
  + CVE-2023-25742 Web Crypto ImportKey crashes tab
  + CVE-2023-25744 Memory safety bugs fixed in Firefox 110 and Firefox ESR 102.8
  + CVE-2023-25746 Memory safety bugs fixed in Firefox ESR 102.8
18 января 2023 г. Pavel Vasenkov 102.7.0-alt1
- New ESR version.
- Security fixes
  + CVE-2022-46871 libusrsctp library out of date
  + CVE-2023-23598 Arbitrary file read from GTK drag and drop on Linux
  + CVE-2023-23599 Malicious command could be hidden in devtools output on Windows
  + CVE-2023-23601 URL being dragged from cross-origin iframe into same tab triggers navigation
  + CVE-2023-23602 Content Security Policy wasn't being correctly applied to WebSockets in WebWorkers
  + CVE-2022-46877 Fullscreen notification bypass
  + CVE-2023-23603 Calls to <code>console.log</code> allowed bypasing Content Security Policy via format directive
  + CVE-2023-23605 Memory safety bugs fixed in Firefox 109 and Firefox ESR 102.7
14 декабря 2022 г. Pavel Vasenkov 102.6.0-alt1
- New ESR version.
- Security fixes
  + CVE-2022-46880 Use-after-free in WebGL
  + CVE-2022-46872 Arbitrary file read from a compromised content process
  + CVE-2022-46881 Memory corruption in WebGL
  + CVE-2022-46874 Drag and Dropped Filenames could have been truncated to malicious extensions
  + CVE-2022-46875 Download Protections were bypassed by .atloc and .ftploc files on Mac OS
  + CVE-2022-46882 Use-after-free in WebGL
  + CVE-2022-46878 Memory safety bugs fixed in Firefox 108 and Firefox ESR 102.6