Package firefox-esr: Information

    Source package: firefox-esr
    Version: 45.9.0-alt0.M70P.1
    Build time:  May 20, 2017, 01:29 AM in the task #183134
    Copied in the task: #183165
    Category: Networking/WWW
    Report package bug
    License: MPL/GPL/LGPL
    Summary: The Mozilla Firefox project is a redesign of Mozilla's browser
    Description: 
    The Mozilla Firefox project is a redesign of Mozilla's browser
    component, written using the XUL user interface language and designed to
    be cross-platform.

    List of rpms provided by this srpm:
    firefox-esr (x86_64, i586)
    firefox-esr-debuginfo (x86_64, i586)

    Maintainer: Andrey Cherepanov


    ACL:
    Igor Vlasenko
    @everybody

      1. libwireless-devel
      2. alternatives
      3. libshell
      4. autoconf_2.13
      5. autoconf_2.13
      6. libevent-devel
      7. libffi-devel
      8. libstartup-notification-devel
      9. libfreetype-devel
      10. makedepend
      11. pkgconfig(nspr) >= 4.12.0
      12. pkgconfig(nss) >= 3.24.0
      13. browser-plugins-npapi-devel
      14. bzlib-devel
      15. chrpath
      16. mozilla-common-devel
      17. glibc-kernheaders
      18. python-module-distribute
      19. libX11-devel
      20. libgio-devel
      21. libXScrnSaver-devel
      22. libXcomposite-devel
      23. libXdamage-devel
      24. libGL-devel
      25. libXext-devel
      26. python-modules-compiler
      27. python-modules-json
      28. python-modules-logging
      29. python-modules-sqlite3
      30. libXft-devel
      31. libIDL-devel
      32. doxygen
      33. rpm-build-mozilla.org
      34. gst-plugins1.0-devel
      35. rpm-macros-alternatives
      36. gstreamer1.0-devel
      37. libXt-devel
      38. libnotify-devel
      39. libnss-devel-static
      40. libalsa-devel
      41. libgtk+2-devel
      42. unzip
      43. libopus-devel
      44. fontconfig-devel
      45. libhunspell-devel
      46. libicu56-devel
      47. xorg-cf-files
      48. gcc-c++
      49. imake
      50. libcairo-devel
      51. yasm
      52. zip
      53. zlib-devel
      54. libpixman-devel
      55. libcurl-devel
      56. libvpx-devel
      57. libpulseaudio-devel
      58. libjpeg-devel
      59. libproxy-devel

    Last changed


    May 19, 2017 Andrey Cherepanov 45.9.0-alt0.M70P.1
    - Backport new ESR version to p7 branch
    April 20, 2017 Andrey Cherepanov 45.9.0-alt1
    - New ESR version
    - Security fixes:
      + CVE-2017-5429: Memory safety bugs fixed in Firefox 53, Firefox ESR 45.9,
      + CVE-2017-5462: DRBG flaw in NSS
      + CVE-2017-5445: Uninitialized values used while parsing
      + CVE-2017-5469: Potential Buffer overflow in flex-generated code
      + CVE-2017-5437: Vulnerabilities in Libevent library
      + CVE-2017-5448: Out-of-bounds write in ClearKeyDecryptor
      + CVE-2017-5465: Out-of-bounds read in ConvolvePixel
      + CVE-2017-5447: Out-of-bounds read during glyph processing
      + CVE-2017-5446: Out-of-bounds read when HTTP/2 DATA frames are sent with
      + CVE-2017-5444: Buffer overflow while parsing application/http-index-format
      + CVE-2017-5443: Out-of-bounds write during BinHex decoding
      + CVE-2017-5464: Memory corruption with accessibility and DOM manipulation
      + CVE-2017-5442: Use-after-free during style changes
      + CVE-2017-5441: Use-after-free with selection during scroll events
      + CVE-2017-5440: Use-after-free in txExecutionState destructor during XSLT
      + CVE-2017-5439: Use-after-free in nsTArray Length() during XSLT processing
      + CVE-2017-5438: Use-after-free in nsAutoPtr during XSLT processing
      + CVE-2017-5460: Use-after-free in frame selection
      + CVE-2017-5432: Use-after-free in text input selection
      + CVE-2017-5434: Use-after-free during focus handling
      + CVE-2017-5459: Buffer overflow in WebGL
      + CVE-2017-5461: Out-of-bounds write in Base64 encoding in NSS
      + CVE-2017-5436: Out-of-bounds write with malicious font in Graphite 2
      + CVE-2017-5435: Use-after-free during transaction processing in the editor
      + CVE-2017-5433: Use-after-free in SMIL animation functions
    March 8, 2017 Andrey Cherepanov 45.8.0-alt0.M70P.1
    - Backport new ESR version to p7 branch