Package firefox-esr: Information

Source package: firefox-esr
Version: 45.9.0-alt1
Latest version according to Repology
Build time:  Apr 21, 2017, 10:57 AM in the task #181971
Category: Networking/WWW
Report package bug
License: MPL/GPL/LGPL
Summary: The Mozilla Firefox project is a redesign of Mozilla's browser
Description: 
The Mozilla Firefox project is a redesign of Mozilla's browser
component, written using the XUL user interface language and designed to
be cross-platform.

List of rpms provided by this srpm:
firefox-esr (x86_64, i586)
firefox-esr-debuginfo (x86_64, i586)

Maintainer: Andrey Cherepanov



    1. libvpx-devel
    2. libcurl-devel
    3. libwireless-devel
    4. libshell
    5. alternatives
    6. libevent-devel
    7. autoconf_2.13
    8. autoconf_2.13
    9. libstartup-notification-devel
    10. pkgconfig(nspr) >= 4.12.0
    11. pkgconfig(nss) >= 3.28.1
    12. libffi-devel
    13. browser-plugins-npapi-devel
    14. libfreetype-devel
    15. bzlib-devel
    16. makedepend
    17. chrpath
    18. glibc-kernheaders
    19. mozilla-common-devel
    20. python-module-distribute
    21. libGL-devel
    22. libnotify-devel
    23. libIDL-devel
    24. doxygen
    25. libnss-devel-static
    26. python-modules-compiler
    27. python-modules-json
    28. python-modules-logging
    29. python-modules-sqlite3
    30. gst-plugins1.0-devel
    31. rpm-build-mozilla.org
    32. gstreamer1.0-devel
    33. rpm-macros-alternatives
    34. libopus-devel
    35. libX11-devel
    36. unzip
    37. libgio-devel
    38. fontconfig-devel
    39. libXScrnSaver-devel
    40. libXcomposite-devel
    41. libXdamage-devel
    42. libXext-devel
    43. libXft-devel
    44. libpixman-devel
    45. libXt-devel
    46. xorg-cf-files
    47. libcairo-devel
    48. libalsa-devel
    49. gcc-c++
    50. zip
    51. zlib-devel
    52. imake
    53. yasm
    54. libgtk+2-devel
    55. libproxy-devel
    56. libjpeg-devel
    57. libicu-devel
    58. libhunspell-devel
    59. libpulseaudio-devel

Last changed


April 20, 2017 Andrey Cherepanov 45.9.0-alt1
- New ESR version
- Security fixes:
  + CVE-2017-5429: Memory safety bugs fixed in Firefox 53, Firefox ESR 45.9,
  + CVE-2017-5462: DRBG flaw in NSS
  + CVE-2017-5445: Uninitialized values used while parsing
  + CVE-2017-5469: Potential Buffer overflow in flex-generated code
  + CVE-2017-5437: Vulnerabilities in Libevent library
  + CVE-2017-5448: Out-of-bounds write in ClearKeyDecryptor
  + CVE-2017-5465: Out-of-bounds read in ConvolvePixel
  + CVE-2017-5447: Out-of-bounds read during glyph processing
  + CVE-2017-5446: Out-of-bounds read when HTTP/2 DATA frames are sent with
  + CVE-2017-5444: Buffer overflow while parsing application/http-index-format
  + CVE-2017-5443: Out-of-bounds write during BinHex decoding
  + CVE-2017-5464: Memory corruption with accessibility and DOM manipulation
  + CVE-2017-5442: Use-after-free during style changes
  + CVE-2017-5441: Use-after-free with selection during scroll events
  + CVE-2017-5440: Use-after-free in txExecutionState destructor during XSLT
  + CVE-2017-5439: Use-after-free in nsTArray Length() during XSLT processing
  + CVE-2017-5438: Use-after-free in nsAutoPtr during XSLT processing
  + CVE-2017-5460: Use-after-free in frame selection
  + CVE-2017-5432: Use-after-free in text input selection
  + CVE-2017-5434: Use-after-free during focus handling
  + CVE-2017-5459: Buffer overflow in WebGL
  + CVE-2017-5461: Out-of-bounds write in Base64 encoding in NSS
  + CVE-2017-5436: Out-of-bounds write with malicious font in Graphite 2
  + CVE-2017-5435: Use-after-free during transaction processing in the editor
  + CVE-2017-5433: Use-after-free in SMIL animation functions
March 7, 2017 Andrey Cherepanov 45.8.0-alt1
- New ESR version
- Require fresh libnss for correct https open
Jan. 25, 2017 Andrey Cherepanov 45.7.0-alt1
- New ESR version