Accepted firefox 1.5.dfsg+1.5.0.2-0ubuntu1 (source)
Ian Jackson
iwj at ubuntu.com
Thu Apr 27 19:41:39 BST 2006
Accepted:
OK: firefox_1.5.dfsg+1.5.0.2-0ubuntu1.dsc
-> Component: main Section: web
OK: firefox_1.5.dfsg+1.5.0.2.orig.tar.gz
OK: firefox_1.5.dfsg+1.5.0.2-0ubuntu1.diff.gz
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Wed, 26 Apr 2006 16:53:22 +0100
Source: firefox
Binary: libnspr4 firefox-dom-inspector firefox-dev mozilla-firefox mozilla-firefox-dev libnss3 libnspr-dev firefox-gnome-support firefox-dbg libnss-dev firefox
Architecture: source
Version: 1.5.dfsg+1.5.0.2-0ubuntu1
Distribution: dapper
Urgency: low
Maintainer: Eric Dorland <eric at debian.org>
Changed-By: Ian Jackson <iwj at ubuntu.com>
Description:
firefox - lightweight web browser based on Mozilla
firefox-dbg - Debugging information for firefox
firefox-dev - Development files for Mozilla Firefox
firefox-dom-inspector - tool for inspecting the DOM of pages in Mozilla Firefox
firefox-gnome-support - Support for Gnome in Mozilla Firefox
libnspr-dev - Netscape Portable Runtime library - development files
libnspr4 - Netscape Portable Runtime Library
libnss-dev - Network Security Service Libraries - development
libnss3 - Network Security Service Libraries - runtime
mozilla-firefox - Transition package for firefox rename
mozilla-firefox-dev - dummy transitional package
Changes:
firefox (1.5.dfsg+1.5.0.2-0ubuntu1) dapper; urgency=low
.
* New upstream version, 1.5.0.2.
Described as `stability and security fixes' by upstream but many
changes are included and producing a complete list is infeasible :-(.
Fixes are known to be included for:
- MFSA 2006-29, CVE-2006-1725: Spoofing with translucent windows
- MFSA 2006-28, CVE-2006-1726: Security check of
js_ValueToFunctionObject() can be circumvented
- MFSA 2006-27, CVE-2006-0748: Table Rebuilding Code Execution
Vulnerability
- MFSA 2006-25, CVE-2006-1727: Privilege escalation through Print Preview
- MFSA 2006-24, CVE-2006-1728: Privilege escalation using
crypto.generateCRMFRequest
- MFSA 2006-23, CVE-2006-1729: File stealing by changing input type
- MFSA 2006-22, CVE-2006-1730: CSS Letter-Spacing Heap Overflow
Vulnerability
- MFSA 2006-20, CVE-2006-1529, CVE-2006-1530, CVE-2006-1531,
CVE-2006-1723, CVE-2006-1724: Crashes with evidence of memory
corruption.
This package is based on Debian's firefox_1.5.dfsg+1.5.0.2.orig.tar.gz
but has none of the corresponding Debian changes.
.
firefox (1.5.dfsg+1.5.0.1-1ubuntu12) dapper; urgency=low
.
* Sponsored upload for Theppitak Karoonboonyanan
* Updated Thai word breaking patch:
- load `libthai.so.0' instead of `libthai.so'.
- print debug message only when DEBUG is defined.
- debian/control: Suggests libthai0
Files:
aa84a034d01103c5ddc5f69a2f5a87a0 1103 web optional firefox_1.5.dfsg+1.5.0.2-0ubuntu1.dsc
466edd5d1650d56bab38a79fba85efb9 42867424 web optional firefox_1.5.dfsg+1.5.0.2.orig.tar.gz
3daf83e61f92dcb4c2c9ddc1b24d23c2 162834 web optional firefox_1.5.dfsg+1.5.0.2-0ubuntu1.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
iD8DBQFEUN2r05QTisYqw/QRAuxmAJ9PVfs4lohW4VdIlj1hgcRNq7IT5ACeIfpn
P6+nThDVieAMJygIbJTbhWw=
=uesr
-----END PGP SIGNATURE-----
More information about the dapper-changes
mailing list