Пакет firefox: Информация

    Исходный пакет: firefox
    Версия: 51.0.1-alt0.M80P.1
    Собран:  7 февраля 2017 г. 22:58 в задании #177727
    Категория: Сети/WWW
    Сообщить об ошибке в пакете
    Домашняя страница: http://www.mozilla.org/projects/firefox/

    Лицензия: MPL/GPL/LGPL
    О пакете: The Mozilla Firefox project is a redesign of Mozilla's browser
    Описание: 
    The Mozilla Firefox project is a redesign of Mozilla's browser component,
    written using the XUL user interface language and designed to be
    cross-platform.

    Список rpm-пакетов, предоставляемых данным srpm-пакетом:
    firefox (x86_64, i586)
    firefox-debuginfo (x86_64, i586)
    rpm-build-firefox (noarch)

    Сопровождающий: Alexey Gladkov


      1. libwireless-devel
      2. alternatives
      3. libshell
      4. libevent-devel
      5. autoconf_2.13
      6. autoconf_2.13
      7. libffi-devel
      8. libfreetype-devel
      9. pkgconfig(nspr) >= 4.13.1
      10. pkgconfig(nss) >= 3.28.1
      11. libstartup-notification-devel
      12. libnotify-devel
      13. libnss-devel-static
      14. browser-plugins-npapi-devel
      15. makedepend
      16. glibc-kernheaders
      17. bzlib-devel
      18. chrpath
      19. libopus-devel
      20. mozilla-common-devel
      21. libGL-devel
      22. python-module-distribute
      23. libIDL-devel
      24. libpixman-devel
      25. python-modules-compiler
      26. python-modules-json
      27. python-modules-logging
      28. python-modules-sqlite3
      29. libgio-devel
      30. gst-plugins1.0-devel
      31. gstreamer1.0-devel
      32. rpm-build-mozilla.org
      33. doxygen
      34. libproxy-devel
      35. rpm-macros-alternatives
      36. unzip
      37. xorg-cf-files
      38. fontconfig-devel
      39. libX11-devel
      40. yasm
      41. libXScrnSaver-devel
      42. libpulseaudio-devel
      43. zip
      44. libXcomposite-devel
      45. zlib-devel
      46. libXdamage-devel
      47. libXext-devel
      48. gcc-c++
      49. libXft-devel
      50. libgtk+2-devel
      51. libgtk+3-devel
      52. libcairo-devel
      53. libXt-devel
      54. imake
      55. libalsa-devel
      56. libhunspell-devel
      57. libicu-devel
      58. libjpeg-devel
      59. libcurl-devel
      60. libvpx-devel

    Последнее изменение


    7 февраля 2017 г. Andrey Cherepanov 51.0.1-alt0.M80P.1
    - Backport new version to p8 branch
    30 января 2017 г. Alexey Gladkov 51.0.1-alt1
    - New release (51.0.1).
    - Fixed:
      + CVE-2017-5375: Excessive JIT code allocation allows bypass of ASLR and DEP
      + CVE-2017-5376: Use-after-free in XSL
      + CVE-2017-5377: Memory corruption with transforms to create gradients in Skia
      + CVE-2017-5378: Pointer and frame data leakage of Javascript objects
      + CVE-2017-5379: Use-after-free in Web Animations
      + CVE-2017-5380: Potential use-after-free during DOM manipulations
      + CVE-2017-5390: Insecure communication methods in Developer Tools JSON viewer
      + CVE-2017-5389: WebExtensions can install additional add-ons via modified host requests
      + CVE-2017-5396: Use-after-free with Media Decoder
      + CVE-2017-5381: Certificate Viewer exporting can be used to navigate and save to arbitrary filesystem locations
      + CVE-2017-5382: Feed preview can expose privileged content errors and exceptions
      + CVE-2017-5383: Location bar spoofing with unicode characters
      + CVE-2017-5384: Information disclosure via Proxy Auto-Config (PAC)
      + CVE-2017-5385: Data sent in multipart channels ignores referrer-policy response headers
      + CVE-2017-5386: WebExtensions can use data: protocol to affect other extensions
      + CVE-2017-5394: Android location bar spoofing using fullscreen and JavaScript events
      + CVE-2017-5391: Content about: pages can load privileged about: pages
      + CVE-2017-5392: Weak references using multiple threads on weak proxy objects lead to unsafe memory usage
      + CVE-2017-5393: Remove addons.mozilla.org CDN from whitelist for mozAddonManager
      + CVE-2017-5395: Android location bar spoofing during scrolling
      + CVE-2017-5387: Disclosure of local file existence through TRACK tag error messages
      + CVE-2017-5388: WebRTC can be used to generate a large amount of UDP traffic for DDOS attacks
      + CVE-2017-5374: Memory safety bugs fixed in Firefox 51
      + CVE-2017-5373: Memory safety bugs fixed in Firefox 51 and Firefox ESR 45.7
    17 декабря 2016 г. Andrey Cherepanov 50.1.0-alt0.M80P.1
    - Backport new version to p8 branch