Пакет firefox-esr: Информация

  • Default inline alert: Версия в репозитории: 115.11.0-alt1

Исходный пакет: firefox-esr
Версия: 91.4.0-alt1
Последняя версия по данным Repology
Собран:  8 декабря 2021 г. 11:49 в задании #291513
Категория: Сети/WWW
Сообщить об ошибке в пакете
Домашняя страница: http://www.mozilla.org/projects/firefox/

Лицензия: MPL-2.0
О пакете: The Mozilla Firefox project is a redesign of Mozilla's browser (ESR version)
Описание: 
The Mozilla Firefox project is a redesign of Mozilla's browser component,
written using the XUL user interface language and designed to be
cross-platform.

Список rpm-пакетов, предоставляемых данным srpm-пакетом:
firefox-esr (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-config-privacy (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-wayland (x86_64, ppc64le, i586, armh, aarch64)

Сопровождающий: Andrey Cherepanov


Права:
Pavel Vasenkov
Andrey Cherepanov
@everybody

    1. /proc
    2. libX11-devel
    3. libhunspell-devel
    4. libpulseaudio-devel
    5. libXScrnSaver-devel
    6. libXcomposite-devel
    7. libXcursor-devel
    8. libXdamage-devel
    9. libXext-devel
    10. libXft-devel
    11. fontconfig-devel
    12. libjpeg-devel
    13. libXi-devel
    14. /dev/shm
    15. libXt-devel
    16. libcairo-devel
    17. libvpx-devel
    18. libalsa-devel
    19. libaom-devel
    20. python3-base
    21. libwireless-devel
    22. libcurl-devel
    23. python3-module-pip
    24. libdav1d-devel
    25. libshell
    26. libdbus-devel
    27. python3-module-setuptools
    28. libdbus-glib-devel
    29. libxkbcommon-devel
    30. python3-modules-sqlite3
    31. rust >= 1.54.0
    32. rust-cargo >= 1.54.0
    33. libdrm-devel
    34. alternatives
    35. lld11.0-devel
    36. llvm11.0-devel
    37. libevent-devel
    38. pkgconfig(nspr) >= 4.32
    39. pkgconfig(nss) >= 3.69.0
    40. autoconf_2.13
    41. autoconf_2.13
    42. libffi-devel
    43. libstartup-notification-devel
    44. libstdc++-devel
    45. libfreetype-devel
    46. mozilla-common-devel
    47. browser-plugins-npapi-devel
    48. nasm
    49. bzlib-devel
    50. unzip
    51. node
    52. chrpath
    53. clang11.0
    54. clang11.0-devel
    55. rpm-macros-alternatives
    56. rpm-build-mozilla.org
    57. python-module-setuptools
    58. xorg-cf-files
    59. python-modules-compiler
    60. python-modules-json
    61. python-modules-logging
    62. libnotify-devel
    63. python-modules-sqlite3
    64. libgio-devel
    65. yasm
    66. libnss-devel-static
    67. zip
    68. zlib-devel
    69. libgtk+2-devel
    70. libgtk+3-devel
    71. libopus-devel
    72. gst-plugins1.0-devel
    73. gstreamer1.0-devel
    74. libGL-devel
    75. libproxy-devel
    76. libpixman-devel

Последнее изменение


6 декабря 2021 г. Andrey Cherepanov 91.4.0-alt1
- New ESR version.
- Security fixes:
  + CVE-2021-43536 URL leakage when navigating while executing asynchronous function
  + CVE-2021-43537 Heap buffer overflow when using structured clone
  + CVE-2021-43538 Missing fullscreen and pointer lock notification when requesting both
  + CVE-2021-43539 GC rooting failure when calling wasm instance methods
  + CVE-2021-43541 External protocol handler parameters were unescaped
  + CVE-2021-43542 XMLHttpRequest error codes could have leaked the existence of an external protocol handler
  + CVE-2021-43543 Bypass of CSP sandbox directive when embedding
  + CVE-2021-43545 Denial of Service when using the Location API in a loop
  + CVE-2021-43546 Cursor spoofing could overlay user interface when native cursor is zoomed
18 ноября 2021 г. Andrey Cherepanov 91.3.0-alt2
- Show Home button on toolbar by default (ALT #41360).
2 ноября 2021 г. Andrey Cherepanov 91.3.0-alt1
- New ESR version.
- Security fixes:
  + CVE-2021-38503 iframe sandbox rules did not apply to XSLT stylesheets
  + CVE-2021-38504 Use-after-free in file picker dialog
  + CVE-2021-38505 Windows 10 Cloud Clipboard may have recorded sensitive user data
  + CVE-2021-38506 Firefox could be coaxed into going into fullscreen mode without notification or warning
  + CVE-2021-38507 Opportunistic Encryption in HTTP2 could be used to bypass the Same-Origin-Policy on services hosted on other ports
  + CVE-2021-38508 Permission Prompt could be overlaid, resulting in user confusion and potential spoofing
  + CVE-2021-38509 Javascript alert box could have been spoofed onto an arbitrary domain
  + CVE-2021-38510 Download Protections were bypassed by .inetloc files on Mac OS