Package firefox-esr: Information

Source package: firefox-esr
Version: 102.7.0-alt1
Latest version according to Repology
Build time:  Feb 14, 2023, 07:08 PM in the task #313517
Category: Networking/WWW
Report package bug
License: MPL-2.0
Summary: The Mozilla Firefox project is a redesign of Mozilla's browser (ESR version)
Description: 
The Mozilla Firefox project is a redesign of Mozilla's browser component,
written using the XUL user interface language and designed to be
cross-platform.

List of rpms provided by this srpm:
firefox-esr (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-config-privacy (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
firefox-esr-wayland (x86_64, ppc64le, i586, armh, aarch64)

Maintainer: Andrey Cherepanov



    1. libcairo-devel
    2. python3-module-setuptools
    3. /dev/shm
    4. python3-modules-sqlite3
    5. libcurl-devel
    6. libdav1d-devel
    7. libshell
    8. /proc
    9. libdbus-devel
    10. libdbus-glib-devel
    11. libdrm-devel
    12. gst-plugins1.0-devel
    13. gstreamer1.0-devel
    14. libevent-devel
    15. libstartup-notification-devel
    16. libstdc++-devel
    17. fontconfig-devel
    18. libffi-devel
    19. libfreetype-devel
    20. rpm-build-mozilla.org
    21. alternatives
    22. rpm-macros-alternatives
    23. autoconf_2.13
    24. autoconf_2.13
    25. libX11-devel
    26. pkgconfig(alsa)
    27. pkgconfig(aom)
    28. libXScrnSaver-devel
    29. libgio-devel
    30. pkgconfig(bzip2)
    31. pkgconfig(cairo)
    32. libXcomposite-devel
    33. pkgconfig(dav1d)
    34. pkgconfig(dbus-1)
    35. pkgconfig(dbus-glib-1)
    36. libXcursor-devel
    37. pkgconfig(dri)
    38. libXdamage-devel
    39. pkgconfig(fontconfig)
    40. pkgconfig(freetype2)
    41. pkgconfig(gio-2.0)
    42. libXext-devel
    43. pkgconfig(graphite2)
    44. pkgconfig(gtk+-2.0)
    45. pkgconfig(gtk+-3.0)
    46. libXft-devel
    47. libXi-devel
    48. pkgconfig(harfbuzz)
    49. pkgconfig(hunspell)
    50. pkgconfig(icu-i18n)
    51. browser-plugins-npapi-devel
    52. bzlib-devel
    53. libXt-devel
    54. pkgconfig(libcurl)
    55. pkgconfig(libdrm)
    56. pkgconfig(libevent)
    57. pkgconfig(libffi)
    58. pkgconfig(libjpeg)
    59. pkgconfig(libnotify)
    60. chrpath
    61. pkgconfig(libproxy-1.0)
    62. pkgconfig(libpulse)
    63. clang12.0
    64. clang12.0-devel
    65. pkgconfig(libstartup-notification-1.0)
    66. pkgconfig(nspr) >= 4.33
    67. pkgconfig(nss) >= 3.72
    68. libalsa-devel
    69. pkgconfig(opus)
    70. pkgconfig(pixman-1)
    71. libaom-devel
    72. libgtk+2-devel
    73. libgtk+3-devel
    74. pkgconfig(vpx)
    75. pkgconfig(x11)
    76. pkgconfig(xcomposite)
    77. pkgconfig(xcursor)
    78. pkgconfig(xdamage)
    79. pkgconfig(xext)
    80. pkgconfig(xft)
    81. pkgconfig(xi)
    82. pkgconfig(xkbcommon)
    83. pkgconfig(xrandr)
    84. pkgconfig(xscrnsaver)
    85. pkgconfig(xt)
    86. pkgconfig(xtst)
    87. pkgconfig(zlib)
    88. libhunspell-devel
    89. libjpeg-devel
    90. libvpx-devel
    91. python-module-setuptools
    92. python-modules-compiler
    93. python-modules-json
    94. python-modules-logging
    95. python-modules-sqlite3
    96. python3-base
    97. libwireless-devel
    98. rust >= 1.60.0
    99. rust-cargo >= 1.60.0
    100. libxkbcommon-devel
    101. python3-module-pip
    102. libGL-devel
    103. lld12.0-devel
    104. llvm12.0-devel
    105. unzip
    106. libnotify-devel
    107. xorg-cf-files
    108. libnss-devel-static
    109. yasm
    110. zip
    111. zlib-devel
    112. mozilla-common-devel
    113. libpixman-devel
    114. nasm
    115. node
    116. libopus-devel
    117. libpulseaudio-devel
    118. libproxy-devel

Last changed


Jan. 18, 2023 Pavel Vasenkov 102.7.0-alt1
- New ESR version.
- Security fixes
  + CVE-2022-46871 libusrsctp library out of date
  + CVE-2023-23598 Arbitrary file read from GTK drag and drop on Linux
  + CVE-2023-23599 Malicious command could be hidden in devtools output on Windows
  + CVE-2023-23601 URL being dragged from cross-origin iframe into same tab triggers navigation
  + CVE-2023-23602 Content Security Policy wasn't being correctly applied to WebSockets in WebWorkers
  + CVE-2022-46877 Fullscreen notification bypass
  + CVE-2023-23603 Calls to <code>console.log</code> allowed bypasing Content Security Policy via format directive
  + CVE-2023-23605 Memory safety bugs fixed in Firefox 109 and Firefox ESR 102.7
Dec. 14, 2022 Pavel Vasenkov 102.6.0-alt1
- New ESR version.
- Security fixes
  + CVE-2022-46880 Use-after-free in WebGL
  + CVE-2022-46872 Arbitrary file read from a compromised content process
  + CVE-2022-46881 Memory corruption in WebGL
  + CVE-2022-46874 Drag and Dropped Filenames could have been truncated to malicious extensions
  + CVE-2022-46875 Download Protections were bypassed by .atloc and .ftploc files on Mac OS
  + CVE-2022-46882 Use-after-free in WebGL
  + CVE-2022-46878 Memory safety bugs fixed in Firefox 108 and Firefox ESR 102.6
Dec. 9, 2022 Pavel Vasenkov 102.5.0-alt2
- Build with llvm-version 12 instead llvm-version 13 (Closes: #44436)