ffaf47260d
and c't Browsercheck, I am no longer able to activate bug #141061 ("XMLHttpRequest allows reading of local files"). In message <52D05AEFB0D95C4BAD179A054A54CDEB1BD37A@mailsrv1.jubii.dk> on Bugtraq, Thor Larholm described a buffer overflow in Chatzilla. I confirmed the bug with this version of Mozilla/Chatzilla. Therefore the chatzilla component is now omitted from batch builds and defaults to being omitted from interactive ones too (XFree86 did crash once--perhaps taken down by Mozilla--when I was viewing Thor's demonstration page for the bug, but a second visit was uneventful). I added a warning in capitals for interactive users. I was unable to reproduce the other bug reported by Thor in the same message. |
||
---|---|---|
.. | ||
scripts | ||
distinfo | ||
Makefile | ||
pkg-comment | ||
pkg-descr | ||
pkg-message |