diff --git a/MozillaFirefox.changes b/MozillaFirefox.changes index 096a5ee0..5ef6c129 100644 --- a/MozillaFirefox.changes +++ b/MozillaFirefox.changes @@ -1,3 +1,14 @@ +------------------------------------------------------------------- +Tue Oct 2 21:28:31 UTC 2018 - astieger@suse.com + +- Mozilla Firefox 62.0.3: + MFSA 2018-24 + * CVE-2018-12386 (bsc#1110506, bmo#1493900) + Type confusion in JavaScript allowed remote code execution + * CVE-2018-12387 (bsc#1110507, bmo#1493903) + Array.prototype.push stack pointer vulnerability may enable + exploits in the sandboxed content process + ------------------------------------------------------------------- Sat Sep 22 09:03:53 UTC 2018 - astieger@suse.com diff --git a/MozillaFirefox.spec b/MozillaFirefox.spec index 6734eac5..fee692c1 100644 --- a/MozillaFirefox.spec +++ b/MozillaFirefox.spec @@ -13,18 +13,18 @@ # license that conforms to the Open Source Definition (Version 1.9) # published by the Open Source Initiative. -# Please submit bugfixes or comments via https://bugs.opensuse.org/ +# Please submit bugfixes or comments via http://bugs.opensuse.org/ # # changed with every update %define major 62 -%define mainver %major.0.2 -%define orig_version 62.0.2 +%define mainver %major.0.3 +%define orig_version 62.0.3 %define orig_suffix %{nil} %define update_channel release %define branding 1 -%define releasedate 20180921000000 +%define releasedate 20181002000000 %define source_prefix firefox-%{orig_version} # PIE, full relro (x86_64 for now) diff --git a/compare-locales.tar.xz b/compare-locales.tar.xz index f3dee8a1..58ddc20a 100644 --- a/compare-locales.tar.xz +++ b/compare-locales.tar.xz @@ -1,3 +1,3 @@ version https://git-lfs.github.com/spec/v1 -oid sha256:86585e8285593e3a08c14dc238df48a071284127a540dd628a9f468d0d296c12 -size 28832 +oid sha256:27af58da73451950ebf835d79afa0a16bf3f1a656d2a754a9d425117412ed4b0 +size 28828 diff --git a/create-tar.sh b/create-tar.sh index ad56f26e..0e6e719d 100644 --- a/create-tar.sh +++ b/create-tar.sh @@ -7,8 +7,8 @@ CHANNEL="release" BRANCH="releases/mozilla-$CHANNEL" -RELEASE_TAG="150c70d39363b57ea4e92fbbd900b338f09177d6" -VERSION="62.0.2" +RELEASE_TAG="c9ed11ae5c79df3dcb69075e1c9da0317d1ecb1b" +VERSION="62.0.3" VERSION_SUFFIX="" LOCALE_FILE="firefox-$VERSION/browser/locales/l10n-changesets.json" diff --git a/firefox-62.0.2.source.tar.xz b/firefox-62.0.2.source.tar.xz deleted file mode 100644 index 65a537aa..00000000 --- a/firefox-62.0.2.source.tar.xz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:0474ce1bc9ed512e926d2d58d570e93f958f32bb7da755008e8fedca94f0e2ad -size 258831964 diff --git a/firefox-62.0.2.source.tar.xz.asc b/firefox-62.0.2.source.tar.xz.asc deleted file mode 100644 index 17dd2e6e..00000000 --- a/firefox-62.0.2.source.tar.xz.asc +++ /dev/null @@ -1,17 +0,0 @@ ------BEGIN PGP SIGNATURE----- -Version: GnuPG v2.0.14 (GNU/Linux) - -iQIcBAABCAAGBQJbo9BZAAoJELu+vbskxvNV1YcQAKD2cZpaBvIHDOKbAWsuDDxO -czRU6b8mB9wJCGZzaktjv9m8yMZRVjK05EvOzfJM2QjrouE3YvFcQxz8cCnL9/Ql -eVRMAWMEIQoSIoM+fhGjHXZTEM/xpgRYFuBDNrvDVnIfkc7hIEkJbmg3v3Qdq5/6 -03R4YR1JOuxA22laYLjTyIVcD7iAYpbM+GC7sfLv1XLPAWl/os0/Y96dYReLLPtQ -fDcCscw0B0vLDihHGZN88jQUXpuzphJSPqmoWS4fUC3JL3Ksj/JMctn22PmwzeGu -R/PmrRB7KKLzZdTRWGL7yn9oVWxHIDNvhczoF9wbEpGdq+FQrKf2GWtVkTIpyXTz -A9Bp2o/JaeAeoel7+PNl/rf8XehNuVACnyUMG8qikOwW7LOV4HKK+fdZETztwHZU -l1Sa1MiuBKrpCdGy9d2TRZBnplRlQU32LDczBBqm8RKWi2REZxwZejGvWN5Opcox -P11tnG1fmnnLCWQPuYAycnBVEuM/4SVdEXSFDE0ysZK2P0E87mi0WVZzGXvLFpon -tnkHBkag+HlPbDnTUjYspRTO65tLaQDVIleV9fhVWd/YfK+YgguSv+9CtWKcq8cF -s3bvGW+LKO3F6tB10rlG9CHSTO69jkYKUS5Puvxm5BzMPX8ZwH0OI70VjLcR1i2J -z3HlK8VrTJhyXZuJV9O3 -=iVXX ------END PGP SIGNATURE----- diff --git a/firefox-62.0.3.source.tar.xz b/firefox-62.0.3.source.tar.xz new file mode 100644 index 00000000..9d61d3c8 --- /dev/null +++ b/firefox-62.0.3.source.tar.xz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:c1d506eb7b1225e52398b2e4587085e77ff5f1fbf07728ba0fee60bbeae94636 +size 259531444 diff --git a/firefox-62.0.3.source.tar.xz.asc b/firefox-62.0.3.source.tar.xz.asc new file mode 100644 index 00000000..4fae277c --- /dev/null +++ b/firefox-62.0.3.source.tar.xz.asc @@ -0,0 +1,17 @@ +-----BEGIN PGP SIGNATURE----- +Version: GnuPG v2.0.14 (GNU/Linux) + +iQIcBAABCAAGBQJbsmo1AAoJELu+vbskxvNV8vEQALnsRG+LaLIk2FOHX1BgwpK4 +7eAsq6P80fLJMKsHhyAZK8cPLGPrHK9sctxGhanbAP0HablmcxXRkGxBed74iVmJ +gOYrtI53eG0yy2U9rcC4iti5aa0Ff5jFzapks+XFiuwXabT+vhY2fHPWTLWdxuOy +m7xs9AJuf8Y7sTG1YYeeKQr4AzYdAxxpCC2StVo1Aogp87R0UxbI6Qxu/hL5LgaB +Z+D1vlH7GOFKfAZ/PXMDFmvBLVRv8hp3yWAwUNthQuP01OHHbN67CRvlddge+85c +lygJ+eNq13NUMX0L7nbEIVylvKuEr4zjkRF3A28yRcqn+chr4z3QUvX791Xs6xsJ +S3WL6FDVcOhX4KzTUrkBfGIPfHm+jsFDhHuNSLqDRGasWmwPWEVV08EqalOjEn0h +QCTDxaFd2mn2R53WUo0YwCfFQF983AEGB/Kxkqiim8Sxe58A5VROaJv4ko/QKNCE +8z2cPbmIzw1yC8atnduIYOgCLinadI+ibZ5scaTf+rcNufLnYKEbzeNTuALQnoN9 +ZuPvIdvBf7x2hukDBRgrWmsvGB2/SQJ2OL3Gltqceb5Qo3TSFZS4CSkX8ps7/BKA +VZg72bhRAiyz7dAFah1h5UDH4H79rNS8+BNfVC5MmDTDfjtMm24ApZ3MmcKq48Cz +PMEfO5f6vQZR829H7jre +=lzNt +-----END PGP SIGNATURE----- diff --git a/l10n-62.0.2.tar.xz b/l10n-62.0.2.tar.xz deleted file mode 100644 index d48b5418..00000000 --- a/l10n-62.0.2.tar.xz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:d95b3c654cdec80c6af6a2defb9d1e4546f6ee8ff24012a84a18af55d5d28d2c -size 54178504 diff --git a/l10n-62.0.3.tar.xz b/l10n-62.0.3.tar.xz new file mode 100644 index 00000000..2ee32472 --- /dev/null +++ b/l10n-62.0.3.tar.xz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:86f022b153053311810143d088010c4f66ad1527ffecf1d996406a75ff92879e +size 54184272 diff --git a/source-stamp.txt b/source-stamp.txt index 9b27bdcd..0dd943d1 100644 --- a/source-stamp.txt +++ b/source-stamp.txt @@ -1,2 +1,2 @@ -REV=150c70d39363 +REV=c9ed11ae5c79 REPO=http://hg.mozilla.org/releases/mozilla-release