landry
f6b71b0013
Update to firefox35 3.5.16.
...
Fixes MFSA 2010-74->84.
http://www.mozilla.org/security/known-vulnerabilities/firefox35.html
2010-12-10 10:36:00 +00:00
landry
ead2a86ff0
Security update to firefox35 3.5.15.
...
Fixes MFSA2010-73/CVE-2010-3765/bz #607222 .
2010-10-28 12:03:27 +00:00
landry
d10d8b1140
Update to firefox35 3.5.14
2010-10-22 19:23:13 +00:00
landry
5e4eed70e3
Bugfix update to firefox 3.5.13.
2010-09-19 19:20:03 +00:00
landry
5f8a1719d1
Update firefox35 port to 3.5.12, fixing a whole bunch of MFSA (2010-49->63)
2010-09-12 17:55:30 +00:00
landry
61b81486f8
Update to firefox35 3.5.11, fixes MFSA 2010-{34..47}
...
Convert port to use mozilla MODULE, which gains us --enable-libxul, so
way less libs are installed. Bring patches/files inline with other
mozilla ports. java plugin still works.
ok/testing sthen@ naddy@
2010-08-02 16:05:37 +00:00
landry
b29887170c
Maintenance update to firefox35-3.5.10, Fixes yet another bunch of MFSA,
...
http://www.mozilla.org/security/known-vulnerabilities/firefox35.html
While here, make it build against systemwide nss/nspr, as others do, and
remove corresponding patches for local copy of nss/nspr. Use newer
${SUBST_CMD} semantics to prettify do-install: target.
2010-06-28 21:32:04 +00:00
naddy
939a18fbbc
SECURITY update to 3.5.9:
...
MFSA 2010-24 XMLDocument::load() doesn't check nsIContentPolicy
MFSA 2010-23 Image src redirect to mailto: URL opens email editor
MFSA 2010-22 Update NSS to support TLS renegotiation indication
MFSA 2010-20 Chrome privilege escalation via forced URL drag and drop
MFSA 2010-19 Dangling pointer vulnerability in nsPluginArray
MFSA 2010-18 Dangling pointer vulnerability in nsTreeContentView
MFSA 2010-17 Remote code execution with use-after-free in nsTreeSelection
MFSA 2010-16 Crashes with evidence of memory corruption
2010-03-31 15:56:44 +00:00
sthen
f13bb86663
SECURITY update to Firefox 3.5.8. Same diff from naddy@ and Daniel Dickman.
...
Update sqlite dependency while there.
ok naddy@
(reminder, ports is not fully open, do not commit without specific permission)
2010-02-24 16:59:49 +00:00
naddy
29007885ca
minor reliability update to 3.5.7
2010-01-05 21:26:40 +00:00
naddy
8ee6746f58
SECURITY update to 3.5.6. Fixes:
...
MFSA 2009-71 GeckoActiveXObject exception messages can be used to enumerate installed COM objects
MFSA 2009-70 Privilege escalation via chrome window.opener
MFSA 2009-69 Location bar spoofing vulnerabilities
MFSA 2009-68 NTLM reflection vulnerability
MFSA 2009-67 Integer overflow, crash in libtheora video library
MFSA 2009-66 Memory safety fixes in liboggplay media library
MFSA 2009-65 Crashes with evidence of memory corruption
2009-12-20 20:11:37 +00:00
naddy
ae373b07bf
SECURITY update to 3.5.5. For the list of horrors, see
...
http://www.mozilla.org/security/known-vulnerabilities/firefox35.html
2009-11-27 21:18:52 +00:00
martynas
1e56ae8a3c
security update to firefox35-3.5.3. MFSA 2009-51, MFSA 2009-50,
...
MFSA 2009-49, MFSA 2009-47.
http://www.mozilla.org/security/known-vulnerabilities/firefox35.html#firefox3.5.3
2009-09-10 22:18:59 +00:00
martynas
c815b2d914
security update to firefox35-3.5.2.
2009-08-03 21:27:00 +00:00
martynas
84af2859fd
stability update to firefox 3.5.1. MFSA 2009-41 doesn't affect this port
2009-07-17 17:09:35 +00:00
martynas
cb7ee39000
update to firefox35-3.5, final release. note that this is a separate
...
port; for testing. in the similar way that firefox 3.0 was two
releases ago. we would rather people test final release rather
than some release candidate version. use at your own risk.
ok naddy@
2009-06-30 16:16:00 +00:00
martynas
5473c857d7
import firefox35-3.5rc2, been using it for couple of months.
...
wip, not linked to the build yet. needs nspr&nss updates.
2009-06-21 01:31:23 +00:00