1
0
Go to file
Wolfgang Rosenauer 50b8e0db7c * MFSA 2012-74/CVE-2012-3982/CVE-2012-3983
Miscellaneous memory safety hazards
  * MFSA 2012-75/CVE-2012-3984 (bmo#575294)
    select element persistance allows for attacks
  * MFSA 2012-76/CVE-2012-3985 (bmo#655649)
    Continued access to initial origin after setting document.domain
  * MFSA 2012-77/CVE-2012-3986 (bmo#775868)
    Some DOMWindowUtils methods bypass security checks
  * MFSA 2012-79/CVE-2012-3988 (bmo#725770)
    DOS and crash with full screen and history navigation
  * MFSA 2012-80/CVE-2012-3989 (bmo#783867)
    Crash with invalid cast when using instanceof operator
  * MFSA 2012-81/CVE-2012-3991 (bmo#783260)
    GetProperty function can bypass security checks
  * MFSA 2012-82/CVE-2012-3994 (bmo#765527)
    top object and location property accessible by plugins
  * MFSA 2012-83/CVE-2012-3993/CVE-2012-4184 (bmo#768101, bmo#780370)
    Chrome Object Wrapper (COW) does not disallow acces to privileged
    functions or properties
  * MFSA 2012-84/CVE-2012-3992 (bmo#775009)
    Spoofing and script injection through location.hash
  * MFSA 2012-85/CVE-2012-3995/CVE-2012-4179/CVE-2012-4180/
    CVE-2012-4181/CVE-2012-4182/CVE-2012-4183
    Use-after-free, buffer overflow, and out of bounds read issues
    found using Address Sanitizer
  * MFSA 2012-86/CVE-2012-4185/CVE-2012-4186/CVE-2012-4187/
    CVE-2012-4188
    Heap memory corruption issues found using Address Sanitizer
  * MFSA 2012-87/CVE-2012-3990 (bmo#787704)
    Use-after-free in the IME State Manager

OBS-URL: https://build.opensuse.org/package/show/mozilla:Factory/MozillaThunderbird?expand=0&rev=192
2012-10-09 20:30:32 +00:00
.gitattributes OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/MozillaThunderbird?expand=0&rev=34 2009-07-21 10:08:52 +00:00
.gitignore OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/MozillaThunderbird?expand=0&rev=1 2007-01-15 22:49:32 +00:00
add-plugins.sh.in OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/MozillaThunderbird?expand=0&rev=34 2009-07-21 10:08:52 +00:00
compare-locales.tar.bz2 - update to Thunderbird 16.0 (bnc#783533) 2012-10-09 11:36:47 +00:00
create-tar.sh - update to Thunderbird 16.0 (bnc#783533) 2012-10-09 11:36:47 +00:00
enigmail-1.4.5.tar.gz - update to Thunderbird 16.0 (bnc#783533) 2012-10-09 11:36:47 +00:00
find-external-requires.sh fix build 2011-06-20 09:37:54 +00:00
kde.js - update to Thunderbird 11.0 (bnc#750044) 2012-03-14 07:47:37 +00:00
l10n-16.0.tar.bz2 - update to Thunderbird 16.0 (bnc#783533) 2012-10-09 11:36:47 +00:00
mozilla-arm-disable-edsp.patch - update to Thunderbird 15.0 (bnc#777588) 2012-08-28 19:12:48 +00:00
mozilla-kde.patch - update to Thunderbird 16.0 (bnc#783533) 2012-10-09 11:36:47 +00:00
mozilla-language.patch 7.0 2011-09-26 13:57:38 +00:00
mozilla-nongnome-proxies.patch - update to Thunderbird 13.0 (bnc#765204) 2012-06-06 06:41:25 +00:00
mozilla-ppc.patch - update to Thunderbird 16.0 (bnc#783533) 2012-10-09 11:36:47 +00:00
mozilla-shared-nss-db.patch - update to Thunderbird 16.0 (bnc#783533) 2012-10-09 11:36:47 +00:00
mozilla.sh.in - update to Thunderbird 14.0 (bnc#) 2012-07-16 08:37:53 +00:00
MozillaThunderbird.changes * MFSA 2012-74/CVE-2012-3982/CVE-2012-3983 2012-10-09 20:30:32 +00:00
MozillaThunderbird.spec - update to Thunderbird 16.0 (bnc#783533) 2012-10-09 11:36:47 +00:00
suse-default-prefs.js - do not disable system addons 2011-11-21 21:58:20 +00:00
tb-develdirs.patch - update to Thunderbird 15.0 (bnc#777588) 2012-08-28 19:12:48 +00:00
tb-ssldap.patch update to thunderbird 5 2011-06-28 18:42:13 +00:00
thunderbird-16.0-source.tar.bz2 - update to Thunderbird 16.0 (bnc#783533) 2012-10-09 11:36:47 +00:00
thunderbird-rpmlintrc - update to Thunderbird 11.0 (bnc#750044) 2012-03-14 07:47:37 +00:00
thunderbird-shared-nss-db.patch - update to Thunderbird 13.0 (bnc#765204) 2012-06-06 06:41:25 +00:00
thunderbird.desktop - update to Thunderbird 11.0 (bnc#750044) 2012-03-14 07:47:37 +00:00