Package firefox: Information

Source package: firefox
Version: 87.0-alt1
Build time:  Mar 24, 2021, 05:52 PM in the task #268304
Category: Networking/WWW
Report package bug
License: MPL-2.0
Summary: The Mozilla Firefox project is a redesign of Mozilla's browser
Description: 
The Mozilla Firefox project is a redesign of Mozilla's browser component,
written using the XUL user interface language and designed to be
cross-platform.

List of rpms provided by this srpm:
firefox (x86_64, ppc64le, i586, armh, aarch64)
firefox-config-privacy (noarch)
firefox-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
firefox-wayland (x86_64, ppc64le, i586, armh, aarch64)
rpm-build-firefox (noarch)

Maintainer: Alexey Gladkov


    1. libwireless-devel
    2. python3-base
    3. /dev/shm
    4. libshell
    5. alternatives
    6. python3(pip)
    7. /proc
    8. lld11.0-devel
    9. llvm11.0-devel
    10. libstdc++-devel
    11. pkgconfig(alsa)
    12. pkgconfig(aom)
    13. pkgconfig(bzip2)
    14. pkgconfig(cairo)
    15. pkgconfig(dav1d)
    16. pkgconfig(dbus-1)
    17. pkgconfig(dbus-glib-1)
    18. pkgconfig(dri)
    19. pkgconfig(fontconfig)
    20. pkgconfig(freetype2)
    21. pkgconfig(gio-2.0)
    22. rust >= 1.50.0
    23. rust-cargo >= 1.50.0
    24. mozilla-common-devel
    25. pkgconfig(graphite2)
    26. python3(setuptools)
    27. pkgconfig(gtk+-2.0)
    28. pkgconfig(gtk+-3.0)
    29. pkgconfig(harfbuzz)
    30. pkgconfig(hunspell)
    31. pkgconfig(icu-i18n)
    32. libnss-devel-static
    33. gst-plugins1.0-devel
    34. pkgconfig(libcurl)
    35. gstreamer1.0-devel
    36. pkgconfig(libdrm)
    37. nasm
    38. pkgconfig(libevent)
    39. pkgconfig(libffi)
    40. python3(sqlite3)
    41. pkgconfig(libjpeg)
    42. browser-plugins-npapi-devel
    43. pkgconfig(libnotify)
    44. node
    45. pkgconfig(libproxy-1.0)
    46. pkgconfig(libpulse)
    47. pkgconfig(libstartup-notification-1.0)
    48. rpm-build-mozilla.org
    49. pkgconfig(nspr) >= 4.30
    50. pkgconfig(nss) >= 3.63.0
    51. chrpath
    52. pkgconfig(opus)
    53. pkgconfig(pixman-1)
    54. clang11.0
    55. clang11.0-devel
    56. rpm-macros-alternatives
    57. pkgconfig(vpx)
    58. pkgconfig(x11)
    59. pkgconfig(xcomposite)
    60. pkgconfig(xcursor)
    61. pkgconfig(xdamage)
    62. pkgconfig(xext)
    63. pkgconfig(xft)
    64. pkgconfig(xi)
    65. pkgconfig(xkbcommon)
    66. pkgconfig(xscrnsaver)
    67. pkgconfig(xt)
    68. pkgconfig(zlib)
    69. unzip
    70. python-module-pip
    71. zip
    72. yasm
    73. python-module-setuptools
    74. xorg-cf-files
    75. python-modules-compiler
    76. python-modules-json
    77. python-modules-logging
    78. python-modules-sqlite3
    79. python2-base

Last changed


March 24, 2021 Alexey Gladkov 87.0-alt1
- New release (87.0).
- Security fixes:
  + CVE-2021-23981: Texture upload into an unbound backing buffer resulted in an out-of-bound read
  + CVE-2021-23982: Internal network hosts could have been probed by a malicious webpage
  + CVE-2021-23983: Transitions for invalid ::marker properties resulted in memory corruption
  + CVE-2021-23984: Malicious extensions could have spoofed popup information
  + CVE-2021-23985: Devtools remote debugging feature could have been enabled without indication to the user
  + CVE-2021-23986: A malicious extension could have performed credential-less same origin policy violations
  + CVE-2021-23987: Memory safety bugs fixed in Firefox 87 and Firefox ESR 78.9
  + CVE-2021-23988: Memory safety bugs fixed in Firefox 87
March 1, 2021 Alexey Gladkov 86.0-alt1
- New release (86.0).
- Security fixes:
  + CVE-2021-23969: Content Security Policy violation report could have contained the destination of a redirect
  + CVE-2021-23970: Multithreaded WASM triggered assertions validating separation of script domains
  + CVE-2021-23968: Content Security Policy violation report could have contained the destination of a redirect
  + CVE-2021-23974: noscript elements could have led to an HTML Sanitizer bypass
  + CVE-2021-23971: A website's Referrer-Policy could have been be overridden, potentially resulting in the full URL being sent as a Referrer
  + CVE-2021-23976: Local spoofing of web manifests for arbitrary pages in Firefox for Android
  + CVE-2021-23977: Malicious application could read sensitive data from Firefox for Android's application directories
  + CVE-2021-23972: HTTP Auth phishing warning was omitted when a redirect is cached
  + CVE-2021-23975: about:memory Measure function caused an incorrect pointer operation
  + CVE-2021-23973: MediaError message property could have leaked information about cross-origin resources
  + CVE-2021-23978: Memory safety bugs fixed in Firefox 86 and Firefox ESR 78.8
  + CVE-2021-23979: Memory safety bugs fixed in Firefox 86
Feb. 9, 2021 Alexey Gladkov 85.0.2-alt1
- New release (85.0.2).