Пакет firefox-esr: Информация

Исходный пакет: firefox-esr
Версия: 102.10.0-alt1
Собран:  12 мая 2023 г. 21:41 в задании #319671
Категория: Сети/WWW
Сообщить об ошибке в пакете
Домашняя страница: http://www.mozilla.org/projects/firefox/

Лицензия: MPL-2.0
О пакете: The Mozilla Firefox project is a redesign of Mozilla's browser (ESR version)
Описание: 
The Mozilla Firefox project is a redesign of Mozilla's browser component,
written using the XUL user interface language and designed to be
cross-platform.

Список rpm-пакетов, предоставляемых данным srpm-пакетом:
firefox-esr (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-config-privacy (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-wayland (x86_64, ppc64le, i586, armh, aarch64)

Сопровождающий: Andrey Cherepanov


    1. mozilla-common-devel
    2. nasm
    3. /dev/shm
    4. node
    5. python3-base
    6. browser-plugins-npapi-devel
    7. libpixman-devel
    8. bzlib-devel
    9. chrpath
    10. clang12.0
    11. clang12.0-devel
    12. python3-module-pip
    13. python3-module-setuptools
    14. libcairo-devel
    15. python3-modules-sqlite3
    16. libproxy-devel
    17. /proc
    18. libcurl-devel
    19. libpulseaudio-devel
    20. libdav1d-devel
    21. libdbus-devel
    22. libdbus-glib-devel
    23. libdrm-devel
    24. libshell
    25. libevent-devel
    26. fontconfig-devel
    27. rpm-build-mozilla.org
    28. gst-plugins1.0-devel
    29. libffi-devel
    30. alternatives
    31. gstreamer1.0-devel
    32. rpm-macros-alternatives
    33. libfreetype-devel
    34. libstartup-notification-devel
    35. autoconf_2.13
    36. autoconf_2.13
    37. libstdc++-devel
    38. pkgconfig(alsa)
    39. pkgconfig(aom)
    40. pkgconfig(bzip2)
    41. pkgconfig(cairo)
    42. libX11-devel
    43. pkgconfig(dav1d)
    44. pkgconfig(dbus-1)
    45. pkgconfig(dbus-glib-1)
    46. pkgconfig(dri)
    47. libXScrnSaver-devel
    48. pkgconfig(fontconfig)
    49. pkgconfig(freetype2)
    50. libXcomposite-devel
    51. libgio-devel
    52. pkgconfig(gio-2.0)
    53. libXcursor-devel
    54. libXdamage-devel
    55. libXext-devel
    56. pkgconfig(graphite2)
    57. pkgconfig(gtk+-2.0)
    58. pkgconfig(gtk+-3.0)
    59. libXft-devel
    60. libXi-devel
    61. pkgconfig(harfbuzz)
    62. pkgconfig(hunspell)
    63. pkgconfig(icu-i18n)
    64. libXt-devel
    65. pkgconfig(libcurl)
    66. pkgconfig(libdrm)
    67. pkgconfig(libevent)
    68. pkgconfig(libffi)
    69. pkgconfig(libjpeg)
    70. pkgconfig(libnotify)
    71. pkgconfig(libproxy-1.0)
    72. pkgconfig(libpulse)
    73. libalsa-devel
    74. pkgconfig(libstartup-notification-1.0)
    75. pkgconfig(nspr) >= 4.33
    76. pkgconfig(nss) >= 3.72
    77. libaom-devel
    78. pkgconfig(opus)
    79. pkgconfig(pixman-1)
    80. pkgconfig(vpx)
    81. pkgconfig(x11)
    82. pkgconfig(xcomposite)
    83. pkgconfig(xcursor)
    84. pkgconfig(xdamage)
    85. pkgconfig(xext)
    86. pkgconfig(xft)
    87. pkgconfig(xi)
    88. pkgconfig(xkbcommon)
    89. pkgconfig(xrandr)
    90. pkgconfig(xscrnsaver)
    91. pkgconfig(xt)
    92. pkgconfig(xtst)
    93. pkgconfig(zlib)
    94. libgtk+2-devel
    95. libgtk+3-devel
    96. libhunspell-devel
    97. python-module-setuptools
    98. python-modules-compiler
    99. python-modules-json
    100. python-modules-logging
    101. python-modules-sqlite3
    102. libjpeg-devel
    103. libvpx-devel
    104. rust >= 1.60.0
    105. rust-cargo >= 1.60.0
    106. libwireless-devel
    107. unzip
    108. xorg-cf-files
    109. libxkbcommon-devel
    110. yasm
    111. zip
    112. zlib-devel
    113. llvm12.0-devel
    114. libnotify-devel
    115. libGL-devel
    116. libnss-devel-static
    117. lld12.0-devel
    118. libopus-devel

Последнее изменение


19 апреля 2023 г. Pavel Vasenkov 102.10.0-alt1
- New ESR version.
- Security fixes
  + CVE-2023-29531 Out-of-bound memory access in WebGL on macOS
  + CVE-2023-29532 Mozilla Maintenance Service Write-lock bypass
  + CVE-2023-29533 Fullscreen notification obscured
  + CVE-2023-1999 Double-free in libwebp
  + CVE-2023-29535 Potential Memory Corruption following Garbage Collector compaction
  + CVE-2023-29536 Invalid free from JavaScript code
  + CVE-2023-29539 Content-Disposition filename truncation leads to Reflected File Download
  + CVE-2023-29541 Files with malicious extensions could have been downloaded unsafely on Linux
  + CVE-2023-29542 Bypass of file download extension restrictions
  + CVE-2023-29545 Windows Save As dialog resolved environment variables
  + CVE-2023-1945 Memory Corruption in Safe Browsing Code
  + CVE-2023-29548 Incorrect optimization result on ARM64
  + CVE-2023-29550 Memory safety bugs fixed in Firefox 112 and Firefox ESR 102.10
22 марта 2023 г. Pavel Vasenkov 102.9.0-alt1
- New ESR version.
- Security fixes
  + CVE-2023-25751 Incorrect code generation during JIT compilation
  + CVE-2023-28164 URL being dragged from a removed cross-origin iframe into the same tab triggered navigation
  + CVE-2023-28162 Invalid downcast in Worklets
  + CVE-2023-25752 Potential out-of-bounds when accessing throttled streams
  + CVE-2023-28163 Windows Save As dialog resolved environment variables
  + CVE-2023-28176 Memory safety bugs fixed in Firefox 111 and Firefox ESR 102.9
3 марта 2023 г. Pavel Vasenkov 102.8.0-alt1
- New ESR version.
- Security fixes
  + CVE-2023-25728 Content security policy leak in violation reports using iframes
  + CVE-2023-25730 Screen hijack via browser fullscreen mode
  + CVE-2023-0767 Arbitrary memory write via PKCS 12 in NSS
  + CVE-2023-25735 Potential use-after-free from compartment mismatch in SpiderMonkey
  + CVE-2023-25737 Invalid downcast in SVGUtils::SetupStrokeGeometry
  + CVE-2023-25738 Printing on Windows could potentially crash Firefox with some device drivers
  + CVE-2023-25739 Use-after-free in mozilla::dom::ScriptLoadContext::~ScriptLoadContext
  + CVE-2023-25729 Extensions could have opened external schemes without user knowledge
  + CVE-2023-25732 Out of bounds memory write from EncodeInputStream
  + CVE-2023-25734 Opening local .url files could cause unexpected network loads
  + CVE-2023-25742 Web Crypto ImportKey crashes tab
  + CVE-2023-25744 Memory safety bugs fixed in Firefox 110 and Firefox ESR 102.8
  + CVE-2023-25746 Memory safety bugs fixed in Firefox ESR 102.8