forked from pool/MozillaFirefox
b45fd771cd
MFSA 2023-01 (bsc#1207119) * CVE-2023-23597 (bmo#1538028) Logic bug in process allocation allowed to read arbitrary files * CVE-2023-23598 (bmo#1800425) Arbitrary file read from GTK drag and drop on Linux * CVE-2023-23599 (bmo#1777800) Malicious command could be hidden in devtools output on Windows * CVE-2023-23600 (bmo#1787034) Notification permissions persisted between Normal and Private Browsing on Android * CVE-2023-23601 (bmo#1794268) URL being dragged from cross-origin iframe into same tab triggers navigation * CVE-2023-23602 (bmo#1800890) Content Security Policy wasn't being correctly applied to WebSockets in WebWorkers * CVE-2023-23603 (bmo#1800832) Calls to <code>console.log</code> allowed bypasing Content Security Policy via format directive * CVE-2023-23604 (bmo#1802346) Creation of duplicate <code>SystemPrincipal</code> from less secure contexts * CVE-2023-23605 (bmo#1764921, bmo#1802690, bmo#1806974) Memory safety bugs fixed in Firefox 109 and Firefox ESR 102.7 * CVE-2023-23606 (bmo#1764974, bmo#1798591, bmo#1799201, bmo#1800446, bmo#1801248, bmo#1802100, bmo#1803393, bmo#1804626, bmo#1804971, bmo#1807004) OBS-URL: https://build.opensuse.org/package/show/mozilla:Factory/MozillaFirefox?expand=0&rev=1033 |
||
---|---|---|
_constraints | ||
.gitattributes | ||
.gitignore | ||
create-tar.sh | ||
firefox-109.0.source.tar.xz | ||
firefox-109.0.source.tar.xz.asc | ||
firefox-appdata.xml | ||
firefox-branded-icons.patch | ||
firefox-kde.patch | ||
firefox-mimeinfo.xml | ||
firefox-search-provider.ini | ||
firefox.1 | ||
firefox.js | ||
google-api-key | ||
l10n-109.0.tar.xz | ||
mozilla-aarch64-startup-crash.patch | ||
mozilla-api-key | ||
mozilla-bmo531915.patch | ||
mozilla-bmo849632.patch | ||
mozilla-bmo998749.patch | ||
mozilla-bmo1005535.patch | ||
mozilla-bmo1504834-part1.patch | ||
mozilla-bmo1504834-part3.patch | ||
mozilla-bmo1512162.patch | ||
mozilla-bmo1568145.patch | ||
mozilla-buildfixes.patch | ||
mozilla-fix-aarch64-libopus.patch | ||
mozilla-fix-top-level-asm.patch | ||
mozilla-get-app-id | ||
mozilla-kde.patch | ||
mozilla-libavcodec58_91.patch | ||
mozilla-nongnome-proxies.patch | ||
mozilla-ntlm-full-path.patch | ||
mozilla-pgo.patch | ||
mozilla-reduce-rust-debuginfo.patch | ||
mozilla-s390-context.patch | ||
mozilla-s390x-skia-gradient.patch | ||
mozilla-silence-no-return-type.patch | ||
mozilla.keyring | ||
mozilla.sh.in | ||
MozillaFirefox-rpmlintrc | ||
MozillaFirefox.changes | ||
MozillaFirefox.desktop | ||
MozillaFirefox.spec | ||
one_swizzle_to_rule_them_all.patch | ||
spellcheck.js | ||
svg-rendering.patch | ||
tar_stamps |