Bjørn Lie
307cf13d8b
- Update to version 102.7.0: + Various stability, functionality, and security fixes. + CVE-2022-46871: libusrsctp library out of date. + CVE-2023-23598: Arbitrary file read from GTK drag and drop on Linux. + CVE-2023-23599: Malicious command could be hidden in devtools output on Windows. + CVE-2023-23601: URL being dragged from cross-origin iframe into same tab triggers navigation. + CVE-2023-23602: Content Security Policy wasn't being correctly applied to WebSockets in WebWorkers. + CVE-2022-46877: Fullscreen notification bypass. + CVE-2023-23603: Calls to <code>console.log</code> allowed bypasing Content Security Policy via format directive. + CVE-2023-23605: Memory safety bugs fixed in Firefox 109 and Firefox ESR 102.7. OBS-URL: https://build.opensuse.org/request/show/1058990 OBS-URL: https://build.opensuse.org/package/show/GNOME:Factory/mozjs102?expand=0&rev=13 |
||
---|---|---|
_constraints | ||
.gitattributes | ||
.gitignore | ||
0001-Skip-failing-tests-on-ppc64-and-s390x.patch | ||
copy-headers.patch | ||
emitter.patch | ||
firefox-102.7.0esr.source.tar.xz | ||
firefox-102.7.0esr.source.tar.xz.asc | ||
Fix-i586-float-math.patch | ||
fix-soname.patch | ||
icu_sources_data-Write-command-output-to-our-stderr.patch | ||
icu_sources_data.py-Decouple-from-Mozilla-build-system.patch | ||
init_patch.patch | ||
known_failures.txt | ||
mozilla.keyring | ||
mozjs102.changes | ||
mozjs102.spec | ||
remove-sloppy-m4-detection-from-bundled-autoconf.patch | ||
spidermonkey_checks_disable.patch | ||
spidermonkey_style_check_disable_s390x.patch | ||
tests-increase-timeout.patch |