Пакет firefox: Информация

Исходный пакет: firefox
Версия: 63.0.1-alt1
Собран:  13 ноября 2018 г. 22:03 в задании #216395
Категория: Сети/WWW
Сообщить об ошибке в пакете
Домашняя страница: http://www.mozilla.org/projects/firefox/

Лицензия: MPL/GPL/LGPL
О пакете: The Mozilla Firefox project is a redesign of Mozilla's browser
Описание: 
The Mozilla Firefox project is a redesign of Mozilla's browser component,
written using the XUL user interface language and designed to be
cross-platform.

Список rpm-пакетов, предоставляемых данным srpm-пакетом:
firefox (x86_64, i586, aarch64)
firefox-debuginfo (x86_64, i586, aarch64)
rpm-build-firefox (noarch)

Сопровождающий: Alexey Gladkov

Список участников:
Alexey Gladkov
Ivan Zakharyaschev
Konstantin Lepikhov

    1. libalsa-devel
    2. libvpx-devel
    3. libcurl-devel
    4. python3-base
    5. /dev/shm
    6. libdbus-devel
    7. libdbus-glib-devel
    8. libwireless-devel
    9. libshell
    10. alternatives
    11. /proc
    12. libevent-devel
    13. lld-devel
    14. pkgconfig(nspr) >= 4.20
    15. pkgconfig(nss) >= 3.40.0
    16. libffi-devel
    17. llvm6.0-devel
    18. libfreetype-devel
    19. rust >= 1.24.1
    20. autoconf_2.13
    21. rust-cargo >= 0.25.0
    22. libstartup-notification-devel
    23. autoconf_2.13
    24. libstdc++-devel
    25. rpm-build-mozilla.org
    26. rpm-macros-alternatives
    27. python-module-distribute
    28. browser-plugins-npapi-devel
    29. bzlib-devel
    30. mozilla-common-devel
    31. python-module-pip
    32. chrpath
    33. clang6.0
    34. clang6.0-devel
    35. python-modules-compiler
    36. python-modules-json
    37. python-modules-logging
    38. python-modules-sqlite3
    39. libgio-devel
    40. unzip
    41. node
    42. libnotify-devel
    43. libnss-devel-static
    44. libGL-devel
    45. gst-plugins1.0-devel
    46. xorg-cf-files
    47. gstreamer1.0-devel
    48. yasm
    49. fontconfig-devel
    50. zip
    51. libopus-devel
    52. zlib-devel
    53. libcairo-devel
    54. libX11-devel
    55. libXt-devel
    56. libXScrnSaver-devel
    57. libgtk+2-devel
    58. libXft-devel
    59. libXcomposite-devel
    60. libhunspell-devel
    61. libjpeg-devel
    62. libpulseaudio-devel
    63. libXi-devel
    64. libXcursor-devel
    65. libXdamage-devel
    66. libpixman-devel
    67. libgtk+3-devel
    68. libXext-devel
    69. libproxy-devel

Последнее изменение


13 ноября 2018 г. Alexey Gladkov 63.0.1-alt1
- New release (63.0.1).
- Fixed:
  + CVE-2018-12391: HTTP Live Stream audio data is accessible cross-origin
  + CVE-2018-12392: Crash with nested event loops
  + CVE-2018-12393: Integer overflow during Unicode conversion while loading JavaScript
  + CVE-2018-12395: WebExtension bypass of domain restrictions through header rewriting
  + CVE-2018-12396: WebExtension content scripts can execute in disallowed contexts
  + CVE-2018-12397: Missing warning prompt when WebExtension requests local file access
  + CVE-2018-12398: CSP bypass through stylesheet injection in resource URIs
  + CVE-2018-12399: Spoofing of protocol registration notification bar
  + CVE-2018-12400: Favicons are cached in private browsing mode on Firefox for Android
  + CVE-2018-12401: DOS attack through special resource URI parsing
  + CVE-2018-12402: SameSite cookies leak when pages are explicitly saved
  + CVE-2018-12403: Mixed content warning is not displayed when HTTPS page loads a favicon over HTTP
  + CVE-2018-12388: Memory safety bugs fixed in Firefox 63
  + CVE-2018-12390: Memory safety bugs fixed in Firefox 63 and Firefox ESR 60.3
4 октября 2018 г. Alexey Gladkov 62.0.3-alt1
- New release (62.0.3).
- Fixed:
  + CVE-2018-12386: Type confusion in JavaScript
  + CVE-2018-12387: A vulnerability where the JavaScript JIT compiler
  + CVE-2018-12385: Crash in TransportSecurityInfo due to cached data
  + CVE-2018-12377: Use-after-free in refresh driver timers
  + CVE-2018-12378: Use-after-free in IndexedDB
  + CVE-2018-12379: Out-of-bounds write with malicious MAR file
  + CVE-2017-16541: Proxy bypass using automount and autofs
  + CVE-2018-12381: Dragging and dropping Outlook email message results in page navigation
  + CVE-2018-12382: Addressbar spoofing with javascript URI on Firefox for Android
  + CVE-2018-12383: Setting a master password post-Firefox 58 does not delete unencrypted previously stored passwords
  + CVE-2018-12375: Memory safety bugs fixed in Firefox 62
  + CVE-2018-12376: Memory safety bugs fixed in Firefox 62 and Firefox ESR 60.2
6 июля 2018 г. Alexey Gladkov 61.0.1-alt1
- New release (61.0.1).