Subject: CVS commit: [pkgsrc-2005Q3] pkgsrc/www
To: None <pkgsrc-changes@NetBSD.org>
From: Lubomir Sedlacik <salo@netbsd.org>
List: pkgsrc-changes
Date: 10/01/2005 18:47:18
Module Name: pkgsrc
Committed By: salo
Date: Sat Oct 1 18:47:18 UTC 2005
Modified Files:
pkgsrc/www/mozilla [pkgsrc-2005Q3]: Makefile buildlink3.mk distinfo
pkgsrc/www/mozilla-gtk2 [pkgsrc-2005Q3]: Makefile buildlink3.mk
Log Message:
Pullup ticket 793 - requested by Shin'ichiro TAYA
security update for mozilla
Revisions pulled up:
- pkgsrc/www/mozilla/Makefile 1.152
- pkgsrc/www/mozilla/buildlink3.mk 1.14
- pkgsrc/www/mozilla/distinfo 1.88
- pkgsrc/www/mozilla-gtk2/Makefile 1.30
- pkgsrc/www/mozilla-gtk2/buildlink3.mk 1.12
Module Name: pkgsrc
Committed By: taya
Date: Sat Oct 1 04:42:09 UTC 2005
Modified Files:
pkgsrc/www/mozilla: Makefile buildlink3.mk distinfo
pkgsrc/www/mozilla-gtk2: Makefile buildlink3.mk
Log Message:
Update mozilla & mozilla-gtk2 to 1.7.12
This is a bug fix release.
Fixed bugs are follows:
* Fix for a potential buffer overflow vulnerability when loading
a hostname with all soft-hyphens
* Fix to prevent URLs passed from external programs from being
parsed by the shell (Linux only)
* Fix to prevent a crash when loading a Proxy Auto-Config (PAC)
script that uses an "eval" statement
* Fix to restore InstallTrigger.getVersion() for Extension authors
* Fix a crash in mail when stopping a search and then searching again
* Other stability and security fixes
MFSA 2005-59 Command-line handling on Linux allows shell execution
MFSA 2005-58 Firefox 1.0.7 / Mozilla Suite 1.7.12 Vulnerability Fixes
MFSA 2005-57 IDN heap overrun using soft-hyphens
To generate a diff of this commit:
cvs rdiff -r1.151 -r1.151.2.1 pkgsrc/www/mozilla/Makefile
cvs rdiff -r1.13 -r1.13.2.1 pkgsrc/www/mozilla/buildlink3.mk
cvs rdiff -r1.86 -r1.86.2.1 pkgsrc/www/mozilla/distinfo
cvs rdiff -r1.29 -r1.29.2.1 pkgsrc/www/mozilla-gtk2/Makefile
cvs rdiff -r1.11 -r1.11.2.1 pkgsrc/www/mozilla-gtk2/buildlink3.mk
Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.