Package firefox: Information

  • Default inline alert: Version in the repository: 125.0.3-alt1

Source package: firefox
Version: 79.0-alt1
Latest version according to Repology
Build time:  Aug 16, 2020, 03:43 AM in the task #256176
Category: Networking/WWW
Report package bug
License: MPL-2.0
Summary: The Mozilla Firefox project is a redesign of Mozilla's browser
Description: 
The Mozilla Firefox project is a redesign of Mozilla's browser component,
written using the XUL user interface language and designed to be
cross-platform.

List of rpms provided by this srpm:
firefox (x86_64, i586, aarch64)
firefox-config-privacy (noarch)
firefox-debuginfo (x86_64, i586, aarch64)
firefox-wayland (x86_64, i586, aarch64)
rpm-build-firefox (noarch)

Maintainer: Alexey Gladkov



    1. python3-base
    2. libwireless-devel
    3. alternatives
    4. /dev/shm
    5. autoconf_2.13
    6. autoconf_2.13
    7. libshell
    8. pkgconfig(alsa)
    9. pkgconfig(bzip2)
    10. pkgconfig(cairo)
    11. /proc
    12. pkgconfig(dbus-1)
    13. pkgconfig(dbus-glib-1)
    14. pkgconfig(dri)
    15. pkgconfig(fontconfig)
    16. pkgconfig(freetype2)
    17. pkgconfig(gio-2.0)
    18. pkgconfig(gtk+-2.0)
    19. pkgconfig(gtk+-3.0)
    20. pkgconfig(hunspell)
    21. pkgconfig(icu-i18n)
    22. pkgconfig(libcurl)
    23. pkgconfig(libdrm)
    24. pkgconfig(libevent)
    25. pkgconfig(libffi)
    26. lld10.0-devel
    27. pkgconfig(libjpeg)
    28. llvm10.0-devel
    29. pkgconfig(libnotify)
    30. pkgconfig(libproxy-1.0)
    31. pkgconfig(libpulse)
    32. pkgconfig(libstartup-notification-1.0)
    33. pkgconfig(nspr) >= 4.26
    34. pkgconfig(nss) >= 3.54.0
    35. browser-plugins-npapi-devel
    36. pkgconfig(opus)
    37. libstdc++-devel
    38. pkgconfig(pixman-1)
    39. rust >= 1.42.0
    40. python3(pip)
    41. chrpath
    42. rust-cargo >= 1.42.0
    43. pkgconfig(vpx)
    44. clang10.0
    45. clang10.0-devel
    46. pkgconfig(x11)
    47. pkgconfig(xcomposite)
    48. pkgconfig(xcursor)
    49. pkgconfig(xdamage)
    50. libnss-devel-static
    51. pkgconfig(xext)
    52. pkgconfig(xft)
    53. pkgconfig(xi)
    54. pkgconfig(xkbcommon)
    55. mozilla-common-devel
    56. pkgconfig(xscrnsaver)
    57. pkgconfig(xt)
    58. pkgconfig(zlib)
    59. nasm
    60. node
    61. rpm-build-mozilla.org
    62. python3(setuptools)
    63. gst-plugins1.0-devel
    64. gstreamer1.0-devel
    65. rpm-macros-alternatives
    66. python3(sqlite3)
    67. python-module-pip
    68. python-module-setuptools
    69. python-modules-compiler
    70. python-modules-json
    71. python-modules-logging
    72. python-modules-sqlite3
    73. python2-base
    74. unzip
    75. xorg-cf-files
    76. yasm
    77. zip

Last changed


July 30, 2020 Alexey Gladkov 79.0-alt1
- New release (79.0).
- ExcludeArch armh ppc64le
- Security fixes:
  + CVE-2020-15652: Potential leak of redirect targets when loading scripts in a worker
  + CVE-2020-6514: WebRTC data channel leaks internal address to peer
  + CVE-2020-15655: Extension APIs could be used to bypass Same-Origin Policy
  + CVE-2020-15653: Bypassing iframe sandbox when allowing popups
  + CVE-2020-6463: Use-after-free in ANGLE gl::Texture::onUnbindAsSamplerTexture
  + CVE-2020-15656: Type confusion for special arguments in IonMonkey
  + CVE-2020-15658: Overriding file type when saving to disk
  + CVE-2020-15657: DLL hijacking due to incorrect loading path
  + CVE-2020-15654: Custom cursor can overlay user interface
  + CVE-2020-15659: Memory safety bugs fixed in Firefox 79
July 13, 2020 Alexey Gladkov 78.0.2-alt1
- New release (78.0.2).
- Security fixes:
  + MFSA-2020-0003: X-Frame-Options bypass using object or embed tags
July 4, 2020 Alexey Gladkov 78.0.1-alt1
- New release (78.0.1).
- Security fixes:
  + CVE-2020-12415: AppCache manifest poisoning due to url encoded character processing
  + CVE-2020-12416: Use-after-free in WebRTC VideoBroadcaster
  + CVE-2020-12417: Memory corruption due to missing sign-extension for ValueTags on ARM64
  + CVE-2020-12418: Information disclosure due to manipulated URL object
  + CVE-2020-12419: Use-after-free in nsGlobalWindowInner
  + CVE-2020-12420: Use-After-Free when trying to connect to a STUN server
  + CVE-2020-12402: RSA Key Generation vulnerable to side-channel attack
  + CVE-2020-12421: Add-On updates did not respect the same certificate trust rules as software updates
  + CVE-2020-12422: Integer overflow in nsJPEGEncoder::emptyOutputBuffer
  + CVE-2020-12423: DLL Hijacking due to searching %PATH% for a library
  + CVE-2020-12424: WebRTC permission prompt could have been bypassed by a compromised content process
  + CVE-2020-12425: Out of bound read in Date.parse()
  + CVE-2020-12426: Memory safety bugs fixed in Firefox 78