Package firefox-esr: Information

    Source package: firefox-esr
    Version: 115.9.1-alt1
    Build time:  Apr 9, 2024, 09:23 PM in the task #344254
    Category: Networking/WWW
    Report package bug
    License: MPL-2.0
    Summary: The Mozilla Firefox project is a redesign of Mozilla's browser (ESR version)
    Description: 
    The Mozilla Firefox project is a redesign of Mozilla's browser component,
    written using the XUL user interface language and designed to be
    cross-platform.

    List of rpms provided by this srpm:
    firefox-esr (x86_64, i586, armh, aarch64)
    firefox-esr-config-privacy (x86_64, i586, armh, aarch64)
    firefox-esr-debuginfo (x86_64, i586, armh, aarch64)
    firefox-esr-wayland (x86_64, i586, armh, aarch64)

    Maintainer: Andrey Cherepanov


      1. /dev/shm
      2. /proc
      3. alternatives
      4. autoconf_2.13
      5. autoconf_2.13
      6. browser-plugins-npapi-devel
      7. bzlib-devel
      8. chrpath
      9. clang15.0
      10. clang15.0-devel
      11. fontconfig-devel
      12. glibc-kernheaders-generic
      13. gst-plugins1.0-devel
      14. gstreamer1.0-devel
      15. libGL-devel
      16. libX11-devel
      17. libXScrnSaver-devel
      18. libXcomposite-devel
      19. libXcursor-devel
      20. libXdamage-devel
      21. libXext-devel
      22. libXft-devel
      23. libXi-devel
      24. libXt-devel
      25. libalsa-devel
      26. libaom-devel
      27. libcairo-devel
      28. libcurl-devel
      29. libdav1d-devel
      30. libdbus-devel
      31. libdbus-glib-devel
      32. libdrm-devel
      33. libevent-devel
      34. libffi-devel
      35. libfreetype-devel
      36. libgio-devel
      37. libgtk+2-devel
      38. libgtk+3-devel
      39. libhunspell-devel
      40. libjpeg-devel
      41. libnotify-devel
      42. libnss-devel-static
      43. libopus-devel
      44. pkgconfig(alsa)
      45. pkgconfig(aom)
      46. pkgconfig(bzip2)
      47. pkgconfig(cairo)
      48. pkgconfig(dav1d)
      49. pkgconfig(dbus-1)
      50. pkgconfig(dbus-glib-1)
      51. pkgconfig(dri)
      52. pkgconfig(fontconfig)
      53. pkgconfig(freetype2)
      54. pkgconfig(gio-2.0)
      55. pkgconfig(graphite2)
      56. pkgconfig(gtk+-2.0)
      57. pkgconfig(gtk+-3.0)
      58. pkgconfig(harfbuzz)
      59. pkgconfig(hunspell)
      60. pkgconfig(icu-i18n)
      61. pkgconfig(libcurl)
      62. pkgconfig(libdrm)
      63. pkgconfig(libevent)
      64. pkgconfig(libffi)
      65. pkgconfig(libjpeg)
      66. pkgconfig(libnotify)
      67. pkgconfig(libproxy-1.0)
      68. pkgconfig(libpulse)
      69. pkgconfig(libstartup-notification-1.0)
      70. rpm-build-mozilla.org
      71. python3(pip)
      72. rpm-macros-alternatives
      73. pkgconfig(nspr) >= 4.35
      74. pkgconfig(nss) >= 3.86
      75. pkgconfig(opus)
      76. pkgconfig(pixman-1)
      77. pkgconfig(vpx)
      78. pkgconfig(x11)
      79. pkgconfig(xcomposite)
      80. pkgconfig(xcursor)
      81. pkgconfig(xdamage)
      82. pkgconfig(xext)
      83. pkgconfig(xft)
      84. pkgconfig(xi)
      85. pkgconfig(xkbcommon)
      86. pkgconfig(xrandr)
      87. pkgconfig(xscrnsaver)
      88. pkgconfig(xt)
      89. pkgconfig(xtst)
      90. pkgconfig(zlib)
      91. libpixman-devel
      92. python3(setuptools)
      93. python3(sqlite3)
      94. libproxy-devel
      95. libpulseaudio-devel
      96. python3-base
      97. libshell
      98. libstartup-notification-devel
      99. libstdc++-devel
      100. python3(click)
      101. python3(curses)
      102. python3(hamcrest)
      103. python3(imp)
      104. rust >= 1.65.0
      105. rust-cargo >= 1.65.0
      106. unzip
      107. xorg-cf-files
      108. yasm
      109. zip
      110. zlib-devel
      111. libvpx-devel
      112. libwireless-devel
      113. libxkbcommon-devel
      114. lld15.0-devel
      115. llvm15.0-devel
      116. mozilla-common-devel
      117. nasm
      118. node

    Last changed


    April 3, 2024 Pavel Vasenkov 115.9.1-alt1
    - New ESR version.
    - Security fixes
      + CVE-2024-0743 Crash in NSS TLS method
      + CVE-2024-2605 Windows Error Reporter could be used as a Sandbox escape vector
      + CVE-2024-2607 JIT code failed to save return registers on Armv7-A
      + CVE-2024-2608 Integer overflow could have led to out of bounds write
      + CVE-2024-2616 Improve handling of out-of-memory conditions in ICU
      + CVE-2023-5388 NSS susceptible to timing attack against RSA decryption
      + CVE-2024-2610 Improper handling of html and body tags enabled CSP nonce leakage
      + CVE-2024-2611 Clickjacking vulnerability could have led to a user accidentally granting permissions
      + CVE-2024-2612 Self referencing object could have potentially led to a use-after-free
      + CVE-2024-2614 Memory safety bugs fixed in Firefox 124, Firefox ESR 115.9, and Thunderbird 115.9
      + CVE-2024-29944 Privileged JavaScript Execution via Event Handlers
    March 7, 2024 Andrey Cherepanov 115.8.0-alt2
    - Use maximize icon for CSD restore button missing in some themes (ALT #49606).
    Feb. 21, 2024 Pavel Vasenkov 115.8.0-alt1
    - New ESR version.
    - Security fixes
      + CVE-2024-1546 Out-of-bounds memory read in networking channels
      + CVE-2024-1547 Alert dialog could have been spoofed on another site
      + CVE-2024-1548 Fullscreen Notification could have been hidden by select element
      + CVE-2024-1549 Custom cursor could obscure the permission dialog
      + CVE-2024-1550 Mouse cursor re-positioned unexpectedly could have led to unintended permission grants
      + CVE-2024-1551 Multipart HTTP Responses would accept the Set-Cookie header in response parts
      + CVE-2024-1552 Incorrect code generation on 32-bit ARM devices
      + CVE-2024-1553 Memory safety bugs fixed in Firefox 123, Firefox ESR 115.8, and Thunderbird 115.8