Package firefox-esr: Information
Default inline alert: Version in the repository: 115.11.0-alt1
Source package: firefox-esr
Version: 115.2.1-alt2
Build time: Sep 21, 2023, 01:16 PM in the task #329982
Category: Networking/WWW
Report package bugHome page: http://www.mozilla.org/projects/firefox/
License: MPL-2.0
Summary: The Mozilla Firefox project is a redesign of Mozilla's browser (ESR version)
Description:
The Mozilla Firefox project is a redesign of Mozilla's browser component, written using the XUL user interface language and designed to be cross-platform.
List of rpms provided by this srpm:
firefox-esr (x86_64, i586, armh, aarch64)
firefox-esr-config-privacy (x86_64, i586, armh, aarch64)
firefox-esr-debuginfo (x86_64, i586, armh, aarch64)
firefox-esr-wayland (x86_64, i586, armh, aarch64)
firefox-esr (x86_64, i586, armh, aarch64)
firefox-esr-config-privacy (x86_64, i586, armh, aarch64)
firefox-esr-debuginfo (x86_64, i586, armh, aarch64)
firefox-esr-wayland (x86_64, i586, armh, aarch64)
Maintainer: Andrey Cherepanov
List of contributors:
Pavel Vasenkov
Andrey Cherepanov
Alexey Gladkov
Gleb Fotengauer-Malinovskiy
Ivan Zakharyaschev
Pavel Vasenkov
Andrey Cherepanov
Alexey Gladkov
Gleb Fotengauer-Malinovskiy
Ivan Zakharyaschev
Last changed
Sept. 20, 2023 Pavel Vasenkov 115.2.1-alt2
- Restored build for 32bit archs
Sept. 8, 2023 Pavel Vasenkov 115.2.1-alt1
- New ESR version. - Security fixes + CVE-2023-3600 Use-after-free in workers + CVE-2023-4045 Offscreen Canvas could have bypassed cross-origin restrictions + CVE-2023-4046 Incorrect value used during WASM compilation + CVE-2023-4047 Potential permissions request bypass via clickjacking + CVE-2023-4048 Crash in DOMParser due to out-of-memory conditions + CVE-2023-4049 Fix potential race conditions when releasing platform objects + CVE-2023-4050 Stack buffer overflow in StorageManager + CVE-2023-4052 File deletion and privilege escalation through Firefox uninstaller + CVE-2023-4054 Lack of warning when opening appref-ms files + CVE-2023-4055 Cookie jar overflow caused unexpected cookie jar state + CVE-2023-4056 Memory safety bugs fixed in Firefox 116, Firefox ESR 115.1, Firefox ESR 102.14, Thunderbird 115.1, and Thunderbird 102.14 + CVE-2023-4057 Memory safety bugs fixed in Firefox 116, Firefox ESR 115.1, and Thunderbird 115.1 + CVE-2023-4573 Memory corruption in IPC CanvasTranslator + CVE-2023-4574 Memory corruption in IPC ColorPickerShownCallback + CVE-2023-4575 Memory corruption in IPC FilePickerShownCallback + CVE-2023-4576 Integer Overflow in RecordedSourceSurfaceCreation + CVE-2023-4577 Memory corruption in JIT UpdateRegExpStatics + CVE-2023-4051 Full screen notification obscured by file open dialog + CVE-2023-4578 Error reporting methods in SpiderMonkey could have triggered an Out of Memory Exception + CVE-2023-4053 Full screen notification obscured by external program + CVE-2023-4580 Push notifications saved to disk unencrypted + CVE-2023-4581 XLL file extensions were downloadable without warnings + CVE-2023-4582 Buffer Overflow in WebGL glGetProgramiv + CVE-2023-4583 Browsing Context potentially not cleared when closing Private Window + CVE-2023-4584 Memory safety bugs fixed in Firefox 117, Firefox ESR 102.15, Firefox ESR 115.2, Thunderbird 102.15, and Thunderbird 115.2 + CVE-2023-4585 Memory safety bugs fixed in Firefox 117, Firefox ESR 115.2, and Thunderbird 115.2 + CVE-2023-4863 Heap buffer overflow in libwebp
June 27, 2023 Pavel Vasenkov 102.12.0-alt2
- Fixes: Unstable name collisions Build failure with GCC 13