head 1.24; access; symbols pkgsrc-2020Q1:1.22.0.2 pkgsrc-2020Q1-base:1.22 pkgsrc-2019Q4:1.19.0.4 pkgsrc-2019Q4-base:1.19 pkgsrc-2019Q3:1.18.0.4 pkgsrc-2019Q3-base:1.18 pkgsrc-2019Q2:1.18.0.2 pkgsrc-2019Q2-base:1.18 pkgsrc-2019Q1:1.9.0.2 pkgsrc-2019Q1-base:1.9 pkgsrc-2018Q4:1.4.0.2 pkgsrc-2018Q4-base:1.4 pkgsrc-2018Q3:1.2.0.2 pkgsrc-2018Q3-base:1.2 pkgsrc-2018Q2:1.1.0.2 pkgsrc-2018Q2-base:1.1; locks; strict; comment @# @; 1.24 date 2020.06.07.10.34.42; author nia; state dead; branches; next 1.23; commitid aCtCVv72vCKuqhbC; 1.23 date 2020.03.30.19.46.02; author joerg; state Exp; branches; next 1.22; commitid U1R5aWqr1NdQGs2C; 1.22 date 2020.02.08.22.01.36; author kamil; state Exp; branches; next 1.21; commitid aozIzLrXlnih5VVB; 1.21 date 2020.02.08.21.54.30; author kamil; state Exp; branches; next 1.20; commitid 3ADdUoCqiGyL2VVB; 1.20 date 2020.01.05.02.18.53; author ryoon; state Exp; branches; next 1.19; commitid k8uzOHIuvnWjDrRB; 1.19 date 2019.12.28.05.48.06; author ryoon; state Exp; branches; next 1.18; commitid VNUpAaWT62OY2rQB; 1.18 date 2019.06.21.16.38.02; author ryoon; state Exp; branches; next 1.17; commitid TAM3Nu4aXp2FK4sB; 1.17 date 2019.06.20.16.10.05; author bouyer; state Exp; branches; next 1.16; commitid ycWJ6JBo0yoACWrB; 1.16 date 2019.06.13.14.16.37; author nia; state Exp; branches; next 1.15; commitid L7ODuGow0ISL82rB; 1.15 date 2019.06.01.19.11.28; author maya; state Exp; branches; next 1.14; commitid HEuzUYS3SbMIewpB; 1.14 date 2019.06.01.15.01.39; author wiz; state Exp; branches; next 1.13; commitid WUur4Fro3KzoRupB; 1.13 date 2019.05.29.12.31.33; author wiz; state Exp; branches; next 1.12; commitid WYsmKtg0VT0U76pB; 1.12 date 2019.05.27.13.01.20; author ryoon; state Exp; branches; next 1.11; commitid 7QnGfMlPT2q7mQoB; 1.11 date 2019.05.11.04.02.29; author ryoon; state Exp; branches; next 1.10; commitid CIxbRmJj8tcVSJmB; 1.10 date 2019.05.06.09.31.37; author ryoon; state Exp; branches; next 1.9; commitid tIhNej5zzOf2S7mB; 1.9 date 2019.03.24.12.36.42; author ryoon; state Exp; branches; next 1.8; commitid Sg5zYme7XNMdhCgB; 1.8 date 2019.03.15.09.59.26; author wiz; state Exp; branches; next 1.7; commitid 84gOWaiwQ0ceHrfB; 1.7 date 2019.03.04.15.55.18; author ryoon; state Exp; branches; next 1.6; commitid gEpBHBYbuGAc14eB; 1.6 date 2019.02.26.13.47.39; author ryoon; state Exp; branches; next 1.5; commitid jujfyXaCss0evhdB; 1.5 date 2019.02.26.11.23.53; author ryoon; state Exp; branches; next 1.4; commitid BMTleQsTSXM2IgdB; 1.4 date 2018.12.16.07.38.47; author ryoon; state Exp; branches; next 1.3; commitid 4LykTV9Be76kMZ3B; 1.3 date 2018.10.29.01.16.58; author maya; state Exp; branches; next 1.2; commitid njbehWdQoyincNXA; 1.2 date 2018.09.15.06.04.04; author ryoon; state Exp; branches 1.2.2.1; next 1.1; commitid FoweH1hwFruadaSA; 1.1 date 2018.06.28.14.04.10; author ryoon; state Exp; branches; next ; commitid FLpZD0GqQ3Vkp3IA; 1.2.2.1 date 2018.10.29.19.05.13; author bsiegert; state Exp; branches; next ; commitid FXZTYsyAdhhu7TXA; desc @@ 1.24 log @www: Remove firefox60 - EOL @ text @$NetBSD: distinfo,v 1.23 2020/03/30 19:46:02 joerg Exp $ SHA1 (firefox-60.9.0esr.source.tar.xz) = 616f8afdee741f0bea607a671b8515ef13c68b4a RMD160 (firefox-60.9.0esr.source.tar.xz) = f3ef7629ab28960fb383d3fb12dab69feb0f45ee SHA512 (firefox-60.9.0esr.source.tar.xz) = 4baea5c9c4eff257834bbaee6d7786f69f7e6bacd24ca13c2705226f4a0d88315ab38c650b2c5e9c76b698f2debc7cea1e5a99cb4dc24e03c48a24df5143a3cf Size (firefox-60.9.0esr.source.tar.xz) = 269089044 bytes SHA1 (patch-aa) = 5e07d1a01762b7face950ca41c71447106341f0d SHA1 (patch-browser_app_profile_firefox.js) = 9a43095d94f83f315b9a3ce4a7b0a4301e9c40e6 SHA1 (patch-build_moz.configure_old.configure) = 1df6867eaf73a350fbe8fcd5bd34e1fcab09d707 SHA1 (patch-build_moz.configure_rust.configure) = 2818454ba4df3cbd85174edc4828206b3bf0a82b SHA1 (patch-config_gcc-stl-wrapper.template.h) = 07b7cea056a2db080e87c04393261a9a0f514f32 SHA1 (patch-dom_media_CubebUtils.cpp) = 76fc35167e603f96450f4bc17cd0d76157a22dd3 SHA1 (patch-gfx_angle_checkout_src_common_third__party_smhasher_src_PMurHash.cpp) = f1d0adae2873545818072adb4e8599267bc4e6c5 SHA1 (patch-gfx_gl_GLContextProviderGLX.cpp) = 28c033037ac30636acdc7dd8f6637d5446ff25f7 SHA1 (patch-gfx_webrender_src_query.rs) = 6434b0fc1d6441ddb555a2a3b199564b488ec336 SHA1 (patch-ipc_chromium_src_base_lock__impl__posix.cc) = 16e37fe54ba1d8d233f6b04dbd06e248305d7f6e SHA1 (patch-ipc_chromium_src_base_message__pump__libevent.cc) = cdb159f0ede970b150eca4cc5e0d1b2cf4e414b2 SHA1 (patch-ipc_chromium_src_base_platform__thread__posix.cc) = 0809f1b12d3627e36cd32dce46a332abd7a74e6b SHA1 (patch-ipc_glue_CrossProcessSemaphore.h) = 778a569887d8ad082abc2fa2fe89a0a943e84d64 SHA1 (patch-ipc_glue_CrossProcessSemaphore__posix.cpp) = 8775f39cdf91f61754474dde79f3895658348b02 SHA1 (patch-ipc_glue_GeckoChildProcessHost.cpp) = 260c29bacd8bf265951b7a412f850bf2b292c836 SHA1 (patch-js_src_gc_Memory.cpp) = b27f68d31f584052dfb8a2d3132efc844c52c8e4 SHA1 (patch-js_src_threading_posix_Thread.cpp) = 47e612a676e614fd6dd43b8a3140218a3fbdc7fa SHA1 (patch-js_src_util_NativeStack.cpp) = 3af7d3c90ce9299f0a95b938ca903488e7809d0a SHA1 (patch-js_src_wasm_WasmSignalHandlers.cpp) = 5442266a05721a9f4a3c9d12429bd1d59ecd936a SHA1 (patch-media_libcubeb_gtest_moz.build) = 921a001726cda9e9782df5e59ae02b19d76ef47e SHA1 (patch-media_libcubeb_src_cubeb.c) = 90c1b484ce9db2dade2c92b36f4978fbdc5dbea7 SHA1 (patch-media_libcubeb_src_cubeb__alsa.c) = 3ee36f58bb525767c7d2b9e814ba4ccaa4868717 SHA1 (patch-media_libcubeb_src_cubeb__oss.c) = 103f751d5a7bc14a81a6ed43e1afc722bc092f7e SHA1 (patch-media_libcubeb_src_moz.build) = 1a3c0e484da83acabf30f7fad6b43fe94411d8b8 SHA1 (patch-media_libcubeb_update.sh) = d10633a378b68f91eb39d6572d857edd9b07dc9b SHA1 (patch-media_libpng_pngpriv.h) = c8084332560017cd7c9b519b61d125fa28af0dbc SHA1 (patch-media_webrtc_trunk_webrtc_modules_audio__device_linux_audio__device__alsa__linux.cc) = 91e8ce496c1f4dbbd0a463d83cb033afd1de3f49 SHA1 (patch-media_webrtc_trunk_webrtc_modules_video__capture_linux_device__info__linux.cc) = 0141dd1372c13ea1fce6e2f5ffb65e0cb0f3a13e SHA1 (patch-media_webrtc_trunk_webrtc_modules_video__capture_linux_video__capture__linux.cc) = a69bc7b7096b410582e725f9dbec57fee90d6686 SHA1 (patch-modules_pdfium_update.sh) = b0bf091325c9322c54880de067871354cd689038 SHA1 (patch-nsprpub_pr_src_pthreads_ptsynch.c) = 49c1cd3b70e707fccec695f87bf00bf8749ba7f4 SHA1 (patch-servo_components_style__traits_lib.rs) = b07dfc91bae3f94b7da0c5dab523a6901b9b1bf7 SHA1 (patch-servo_components_style_build__gecko.rs) = fca2260a70b496fc010f165ff4d68788b7e28632 SHA1 (patch-servo_components_style_lib.rs) = 1df2f6580da3c4a2fadd7ddcead000fa3c8a6a14 SHA1 (patch-third__party_rust_cssparser_src_parser.rs) = 97d89ca616271dea3dd564b1e96f0087c21e8be0 SHA1 (patch-third__party_rust_url_src_form__urlencoded.rs) = 803c9501d2aec0ad1588cd05d625f679581841f6 SHA1 (patch-third__party_rust_url_src_lib.rs) = 97730d2d9a1b6e3b42687da4cdb04b4ac1bd903b SHA1 (patch-toolkit_components_terminator_nsTerminator.cpp) = 5b6d2e5c9f685d32894898d3ef3aec09a1a1e5ce SHA1 (patch-toolkit_library_moz.build) = ecb6125e996d5496335c58ecd3433ad3214f29f0 SHA1 (patch-toolkit_moz.configure) = 40ee147cc1d2c62dd6c83b3f67ce9e61f758ea57 SHA1 (patch-toolkit_mozapps_installer_packager.mk) = 6f557fb732f0b9dabf059ffac0400d3db4e79e47 SHA1 (patch-toolkit_xre_glxtest.cpp) = e02b1073fe1a6f36872b10883455c8be59ff81e9 SHA1 (patch-xpcom_base_nscore.h) = 3f131370b9665a0af55cab7f8f54723ebbc389fa SHA1 (patch-xpcom_build_BinaryPath.h) = 595569235ddcd1a1caaaa0c94796dd3b9535d391 SHA1 (patch-xpcom_reflect_xptcall_md_unix_xptcinvoke__sparc64__netbsd.cpp) = 0792c2c626d906e71c5183994cb32bf8cdb3e239 @ 1.23 log @Fix build with libc++ by making the template wrapper do what it is supposed to do. Don't mess with math.h internals. Honor ressource limit changes during build. @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.22 2020/02/08 22:01:36 kamil Exp $ @ 1.22 log @Remove leftover file from distinfo @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.21 2020/02/08 21:54:30 kamil Exp $ d11 1 @ 1.21 log @firefox60: Workaround broken pthread_equal() usage Switch to an internal version of pthread_equal() without sanity checks. Problems detected on NetBSD 9.99.46. @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.20 2020/01/05 02:18:53 ryoon Exp $ a39 1 SHA1 (patch-third__party_rust_cssparser_.cargo-checksum.json) = d968afb9e9b4843737c9e9bf78aa4c513b730911 @ 1.20 log @firefox60: Fix build with rust-1.40.0, bump PKGREVISION @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.19 2019/12/28 05:48:06 ryoon Exp $ d36 1 d40 1 @ 1.19 log @Update to 60.9.0 * Fix build with rust-1.39.0 Changelog: #CVE-2019-11746: Use-after-free while manipulating video #CVE-2019-11744: XSS by breaking out of title and textarea elements using innerHTML #CVE-2019-11742: Same-origin policy violation with SVG filters and canvas to steal cross-origin images #CVE-2019-11753: Privilege escalation with Mozilla Maintenance Service in custom Firefox installation location #CVE-2019-11752: Use-after-free while extracting a key value in IndexedDB #CVE-2019-9812: Sandbox escape through Firefox Sync #CVE-2019-11743: Cross-origin access to unload event attributes #CVE-2019-11740: Memory safety bugs fixed in Firefox 69, Firefox ESR 68.1, and Firefox ESR 60.9 @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.18 2019/06/21 16:38:02 ryoon Exp $ d40 2 @ 1.18 log @Update to 60.7.2 Changelog: #CVE-2019-11708: sandbox escape using Prompt:Open @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.17 2019/06/20 16:10:05 bouyer Exp $ d3 4 a6 4 SHA1 (firefox-60.7.2esr.source.tar.xz) = 508045d500929ff0ae7228d38d91d46b48d69fce RMD160 (firefox-60.7.2esr.source.tar.xz) = cff0dc7976dddab8dce579af8437de22d0e21f8c SHA512 (firefox-60.7.2esr.source.tar.xz) = 1258b0bf231b1b5c96b7063f2529ad9cd312cbd043b1d732abbc439093b41833361bbec3b740f3cf70299734035aa0a7db87c6b7b1537b9619b94bebf9b5c22b Size (firefox-60.7.2esr.source.tar.xz) = 268579256 bytes d39 1 @ 1.17 log @Update firefox60 and firefox60-l10n to 60.7.1, fixing CVE-2019-11707. Tested on amd64, OK ryoon@@ @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.16 2019/06/13 14:16:37 nia Exp $ d3 4 a6 4 SHA1 (firefox-60.7.1esr.source.tar.xz) = 9ef9c1125dcffaeab10c520a28e8edf94166a06e RMD160 (firefox-60.7.1esr.source.tar.xz) = 6ec394fea63d52d291230c9fb49a01f2bf710b79 SHA512 (firefox-60.7.1esr.source.tar.xz) = 597e2872f6fb1959f0945d18b4d56add786dfd031c4cb99e76c5bd01d28c9c4705acc6bbdf8a0b6fcf9105e3f028403d6b79fe7e6d9218c97d743828afeb4087 Size (firefox-60.7.1esr.source.tar.xz) = 267808428 bytes @ 1.16 log @firefox60: Add sun audio backend and make it a default where supported. This replaces the OSS backend with something that passes the unit tests, supports additional channels, and supports recording. It will be included with future versions of Firefox. Tested with: * YouTube audio-video sync test * about:support device detection * WebRTC microphone recording (using an USB microphone) While here, fix WebRTC builds. Note: you can select an audio backend using the about:config variable media.cubeb.backend. This can be set to options such as sun/pulse/oss. Let me know if you still need to use the oss backend. It's very incomplete, buggy, and FreeBSD has already removed it - ideally we should eventually. Bump PKGREVISION. @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.15 2019/06/01 19:11:28 maya Exp $ d3 4 a6 4 SHA1 (firefox-60.7.0esr.source.tar.xz) = 733187de6b20f8902fa207f08ec85f952a2c2e40 RMD160 (firefox-60.7.0esr.source.tar.xz) = 21176def2d22c83042d36844c5d148d324199ac6 SHA512 (firefox-60.7.0esr.source.tar.xz) = c2152857f5f1c816a12fcf5c450268025ee47ee9299ae3355650d86c7c97191b731123a4964154222ca5ba1edc44fee0d1d5f803ae9515841283ecaff6dc9a55 Size (firefox-60.7.0esr.source.tar.xz) = 268497160 bytes @ 1.15 log @firefox*: don't use /dev/sound on netbsd. it treats "pause" as a sticky operation and might randomly fail to play audio if another program has paused its audio. PR kern/54229 @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.14 2019/06/01 15:01:39 wiz Exp $ d7 1 a7 1 SHA1 (patch-aa) = 17ea1093941cabc3dac1c653ba9edd92ec9877da d26 1 a26 1 SHA1 (patch-media_libcubeb_src_cubeb.c) = 1b1b8d57eb710cad13518ded79a0ddee2681881b d29 2 a30 2 SHA1 (patch-media_libcubeb_src_moz.build) = f243068c8908dcb16434221edef8c65db3bb0c83 SHA1 (patch-media_libcubeb_update.sh) = 3a322de06bbe9aafba9da349954ef022bd094992 @ 1.14 log @firefox60: update to 60.7.0nb2. NetBSD doesn't ship libGL.so.1 due to a major bump. Look for the unversioned name. Based on maya's patch for www/firefox. @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.13 2019/05/29 12:31:33 wiz Exp $ d7 1 a7 1 SHA1 (patch-aa) = fdabcc9b055f6439fdbda9b38ab7cec08ff3e231 @ 1.13 log @firefox60: update to 60.7.0nb1. copy tsutsui's commit to firefox: fix wrong latency unit in stream_init() function. Based on a patch in PR pkg/54206 from Y.Sugahara. Bump PKGREVISION. @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.12 2019/05/27 13:01:20 ryoon Exp $ d13 1 @ 1.12 log @Update to 60.7.0 From Piotr Meyer, thank you. Changelog: changed: Font and date adjustments to accommodate the new Reiwa era in Japan fixed: #CVE-2019-9815: Disable hyperthreading on content JavaScript threads on macOS #CVE-2019-9816: Type confusion with object groups and UnboxedObjects #CVE-2019-9817: Stealing of cross-domain images using canvas #CVE-2019-9818: Use-after-free in crash generation server #CVE-2019-9819: Compartment mismatch with fetch API #CVE-2019-9820: Use-after-free of ChromeEventHandler by DocShell #CVE-2019-11691: Use-after-free in XMLHttpRequest #CVE-2019-11692: Use-after-free removing listeners in the event listener manager #CVE-2019-11693: Buffer overflow in WebGL bufferdata on Linux #CVE-2019-7317: Use-after-free in png_image_free of libpng library #CVE-2019-9797: Cross-origin theft of images with createImageBitmap #CVE-2018-18511: Cross-origin theft of images with ImageBitmapRenderingContext #CVE-2019-11694: Uninitialized memory memory leakage in Windows sandbox #CVE-2019-11698: Theft of user history data through drag and drop of hyperlinks to and from bookmarks #CVE-2019-5798: Out-of-bounds read in Skia #CVE-2019-9800: Memory safety bugs fixed in Firefox 67 and Firefox ESR 60.7 @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.11 2019/05/11 04:02:29 ryoon Exp $ d27 1 a27 1 SHA1 (patch-media_libcubeb_src_cubeb__oss.c) = ccd7ad6f09977dab358632107cfd9078b4649f99 @ 1.11 log @Update to 60.6.3 * Convert to ffmpeg dependency to 4 Changelog: Fixed: Further improvements to re-enable web extensions which had been disabled for users with a master password set (Bug 1549249). @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.10 2019/05/06 09:31:37 ryoon Exp $ d3 4 a6 4 SHA1 (firefox-60.6.3esr.source.tar.xz) = 87796801929b453403ffc8a4aea43ab9c2605619 RMD160 (firefox-60.6.3esr.source.tar.xz) = 94c91de6a9502ad6d44c5c271822ac4be0a6a876 SHA512 (firefox-60.6.3esr.source.tar.xz) = 227bf3166e648f8d59e3901b7dd7da67e96adcb3ebf0c7e681db6ca467f21cc4b28bddd0deda00289b29a0a671feaa40def133e37fee8454a5bcea69b295f3fe Size (firefox-60.6.3esr.source.tar.xz) = 268688628 bytes @ 1.10 log @Update to 60.6.2 Changelog: Fixed: Repaired certificate chain to re-enable web extensions that had been disabled @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.9 2019/03/24 12:36:42 ryoon Exp $ d3 4 a6 4 SHA1 (firefox-60.6.2esr.source.tar.xz) = 3a1308fcb92761a5f95db7d34c143b08a5401c47 RMD160 (firefox-60.6.2esr.source.tar.xz) = e299be61f49fc0408616f7417187a8254b326640 SHA512 (firefox-60.6.2esr.source.tar.xz) = ed4bf61555dcdae953b0a2f7bc23fae581b1c205d401e1bec524f62044455774c5cb18566bc2c96a6465bfd0d2b504fa94fbc719c4a46ea80eec2b776e86309f Size (firefox-60.6.2esr.source.tar.xz) = 271234924 bytes @ 1.9 log @Update to 60.6.1 Changelog: 60.6.1 #CVE-2019-9810: IonMonkey MArraySlice has incorrect alias information #CVE-2019-9813: Ionmonkey type confusion with __proto__ mutations 60.6.0 #CVE-2019-9790: Use-after-free when removing in-use DOM elements #CVE-2019-9791: Type inference is incorrect for constructors entered through on-stack replacement with IonMonkey #CVE-2019-9792: IonMonkey leaks JS_OPTIMIZED_OUT magic value to script #CVE-2019-9793: Improper bounds checks when Spectre mitigations are disabled #CVE-2019-9794: Command line arguments not discarded during execution #CVE-2019-9795: Type-confusion in IonMonkey JIT compiler #CVE-2019-9801: Windows programs that are not 'URL Handlers' are exposed to web content #CVE-2018-18506: Proxy Auto-Configuration file can define localhost access to be proxied #CVE-2019-9788: Memory safety bugs fixed in Firefox 66 and Firefox ESR 60.6 Enterprise In the network connections settings, sites added to the "No proxy for" list will now honor that setting regardless of any other specified proxy settings @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.8 2019/03/15 09:59:26 wiz Exp $ d3 4 a6 4 SHA1 (firefox-60.6.1esr.source.tar.xz) = e8195241b33efb4fbd3dcc01b744ec815f04e2c8 RMD160 (firefox-60.6.1esr.source.tar.xz) = 57d1eb61836a1b15a07d05697d15ed718c5c0b83 SHA512 (firefox-60.6.1esr.source.tar.xz) = a1683e9ad551c2aa6b84013216393fe1f7107728c253ed8e5700d419cf0956513110ed4e1b5dbac3e3bc23930e3024706f1b24d405b6edcdf8c175b03ab241ed Size (firefox-60.6.1esr.source.tar.xz) = 269197532 bytes @ 1.8 log @firefox60: fix patch @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.7 2019/03/04 15:55:18 ryoon Exp $ d3 4 a6 4 SHA1 (firefox-60.5.2esr.source.tar.xz) = a6fd649d5a9e3943fb3e67a5e45f856a154b0483 RMD160 (firefox-60.5.2esr.source.tar.xz) = ba8bb525e8a307c97f4ec4b1e20ab14781a83097 SHA512 (firefox-60.5.2esr.source.tar.xz) = 5be7e5aefcd038b83a6859004042e796fee5adb48d1a010547ba5fb6eb9c69b11267d56ae9f55ea8f9e7859ea8d600fb93e03e3712f6f9c023370b53c0f5efcd Size (firefox-60.5.2esr.source.tar.xz) = 268056844 bytes @ 1.7 log @Fix build with lang/rust-1.33.0. Bump PKGREVISION @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.6 2019/02/26 13:47:39 ryoon Exp $ d44 1 a44 1 SHA1 (patch-xpcom_build_BinaryPath.h) = fcaca939aca30a4ae07414cd5e6b1497ac3a1178 @ 1.6 log @Remove obsolete patch, noticed by leot@@. Thank you. @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.5 2019/02/26 11:23:53 ryoon Exp $ d35 1 d37 1 @ 1.5 log @Update to 60.5.2 Changelog: 60.5.2 Fixed a frequent crash when reading various Reuters news articles (bug 1505844) 60.5.1 #CVE-2018-18356: Use-after-free in Skia #CVE-2019-5785: Integer overflow in Skia #CVE-2018-18335: Buffer overflow in Skia with accelerated Canvas 2D 60.5.0 #CVE-2018-18500: Use-after-free parsing HTML5 stream #CVE-2018-18505: Privilege escalation through IPC channel messages #CVE-2018-18501: Memory safety bugs fixed in Firefox 65 and Firefox ESR 60.5 @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.4 2018/12/16 07:38:47 ryoon Exp $ a10 1 SHA1 (patch-dom_fetch_FetchConsumer.cpp) = a164b68b968633e2f2e29c1c3917a77ac55a886b @ 1.4 log @Update to 60.4.0 Changelog: New Updated list of currency codes to include Unidad Previsional (UYW) (Bug 1499028) Fixed Various security fixes Security fixes: #CVE-2018-17466: Buffer overflow and out-of-bounds read in ANGLE library with TextureStorage11 #CVE-2018-18492: Use-after-free with select element #CVE-2018-18493: Buffer overflow in accelerated 2D canvas with Skia #CVE-2018-18494: Same-origin policy violation using location attribute and performance.getEntries to steal cross-origin URLs #CVE-2018-18498: Integer overflow when calculating buffer sizes for images #CVE-2018-12405: Memory safety bugs fixed in Firefox 64 and Firefox ESR 60.4 @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.3 2018/10/29 01:16:58 maya Exp $ d3 4 a6 4 SHA1 (firefox-60.4.0esr.source.tar.xz) = 0fa5a71ce2cb90ea4be719a92645aa09dff3721f RMD160 (firefox-60.4.0esr.source.tar.xz) = f0b67654864aadb454923cd1ac9abffe0ac20c7c SHA512 (firefox-60.4.0esr.source.tar.xz) = 8119f52b2fc06f76868bf0781fec9d46c8551f0a3ca832ac9bdef6aa6d77c1d785e50d35059f0df5e3586f3396b912af06e448d65e7f5d1f468338eebe8b2cd4 Size (firefox-60.4.0esr.source.tar.xz) = 268425148 bytes d12 1 a12 1 SHA1 (patch-dom_media_CubebUtils.cpp) = 3632cd0dd4b95f53f01050b8898b33fe198916b6 a14 1 SHA1 (patch-image_decoders_nsJPEGDecoder.cpp) = ed86c3fbb3aef753eec6f6a97940594aac5f3f2f d16 2 a17 2 SHA1 (patch-ipc_chromium_src_base_message__pump__libevent.cc) = 99b9f3f9dd88f1c8008d2fb6058450695394f5cf SHA1 (patch-ipc_chromium_src_base_platform__thread__posix.cc) = 5b0bfe78e105cc3f395d5afda25a50afc6289f03 d19 1 a19 1 SHA1 (patch-ipc_glue_CrossProcessSemaphore__posix.cpp) = 3052338871447cedaeafe8369afe82233183c884 d21 1 a21 1 SHA1 (patch-js_src_gc_Memory.cpp) = 40d8285d3f5a060e68a2884dd81b39950f45ff95 d23 2 a24 2 SHA1 (patch-js_src_util_NativeStack.cpp) = c02781c07942d2aa037d5123cc09cb73d5e73316 SHA1 (patch-js_src_wasm_WasmSignalHandlers.cpp) = 1c665a9383638774c00f6c5fead5d786b6c7944a a31 1 SHA1 (patch-media_libyuv_libyuv_source_mjpeg__decoder.cc) = 8a264c439fa4749cd7c5acf96e1ae3f9bae0a886 d41 3 a43 3 SHA1 (patch-toolkit_xre_glxtest.cpp) = cf048491778610454b914400e53072afedd96e7b SHA1 (patch-xpcom_base_nscore.h) = d7c96eda884d7f370442749c43caba50da61bbe4 SHA1 (patch-xpcom_build_BinaryPath.h) = 65af561d663d605134ff2b6c51a268b525f6ac15 @ 1.3 log @firefox60{,-l10n}: update to 60.3.0 patches removed seem to be merged. security fixes: https://www.mozilla.org/en-US/security/advisories/mfsa2018-27/ @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.2 2018/09/15 06:04:04 ryoon Exp $ d3 4 a6 4 SHA1 (firefox-60.3.0esr.source.tar.xz) = bac0745b6abdd5887ec0a46041a8252c344cdc64 RMD160 (firefox-60.3.0esr.source.tar.xz) = ff553704aad2911adbce4e4590d87861d1a1e188 SHA512 (firefox-60.3.0esr.source.tar.xz) = 7ded25a38835fbd73a58085e24ad83308afee1784a3bf853d75093c1500ad46988f5865c106abdae938cfbd1fb10746cc1795ece7994fd7eba8a002158cf1bcd Size (firefox-60.3.0esr.source.tar.xz) = 268340600 bytes @ 1.2 log @Update to 60.2.0 Changelog: #CVE-2018-12377: Use-after-free in refresh driver timers #CVE-2018-12378: Use-after-free in IndexedDB #CVE-2018-12379: Out-of-bounds write with malicious MAR file #CVE-2017-16541: Proxy bypass using automount and autofs #CVE-2018-12381: Dragging and dropping Outlook email message results in page navigation #CVE-2018-12376: Memory safety bugs fixed in Firefox 62 and Firefox ESR 60.2 @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.1 2018/06/28 14:04:10 ryoon Exp $ d3 4 a6 4 SHA1 (firefox-60.2.0esr.source.tar.xz) = 62f542bea08ba39965fe5179404a2a8b336e6358 RMD160 (firefox-60.2.0esr.source.tar.xz) = e5cac1a241279e6a4dadcd7ea860ebe2e2983626 SHA512 (firefox-60.2.0esr.source.tar.xz) = 672632ad7868a013250ec9540287e9fee30a890b1357dd1c475877d8917273d31135c38607e20c8232a890ba7b273055454b05f612a994c46fa7fe665edbe36c Size (firefox-60.2.0esr.source.tar.xz) = 267132936 bytes a38 2 SHA1 (patch-third__party_rust_libloading_.cargo-checksum.json) = 00bb69b7e72911de1658f97b338d1d77e9d11cdb SHA1 (patch-third__party_rust_libloading_build.rs) = 279b0381546d9e2868d4a6e20a8bd195792fc034 @ 1.2.2.1 log @Pullup ticket #5869 - requested by maya www/firefox60: security fix, build fix Revisions pulled up: - www/firefox60-l10n/Makefile 1.4 - www/firefox60-l10n/distinfo 1.4 - www/firefox60/Makefile 1.6-1.7 - www/firefox60/PLIST 1.2 - www/firefox60/distinfo 1.3 - www/firefox60/patches/patch-build_moz.configure_init.configure deleted - www/firefox60/patches/patch-third__party_rust_libloading_.cargo-checksum.json deleted - www/firefox60/patches/patch-third__party_rust_libloading_build.rs deleted --- Module Name: pkgsrc Committed By: he Date: Sun Oct 28 17:40:15 UTC 2018 Modified Files: pkgsrc/www/firefox60: Makefile Added Files: pkgsrc/www/firefox60/patches: patch-build_moz.configure_init.configure Log Message: Add a patch so that this configures with rust >= 1.29, patterned after https://bugzilla.mozilla.org/show_bug.cgi?id=1479540 --- Module Name: pkgsrc Committed By: maya Date: Mon Oct 29 01:16:58 UTC 2018 Modified Files: pkgsrc/www/firefox60: Makefile PLIST distinfo pkgsrc/www/firefox60-l10n: Makefile distinfo Removed Files: pkgsrc/www/firefox60/patches: patch-build_moz.configure_init.configure patch-third__party_rust_libloading_.cargo-checksum.json patch-third__party_rust_libloading_build.rs Log Message: firefox60{,-l10n}: update to 60.3.0 patches removed seem to be merged. security fixes: https://www.mozilla.org/en-US/security/advisories/mfsa2018-27/ @ text @d1 1 a1 1 $NetBSD$ d3 4 a6 4 SHA1 (firefox-60.3.0esr.source.tar.xz) = bac0745b6abdd5887ec0a46041a8252c344cdc64 RMD160 (firefox-60.3.0esr.source.tar.xz) = ff553704aad2911adbce4e4590d87861d1a1e188 SHA512 (firefox-60.3.0esr.source.tar.xz) = 7ded25a38835fbd73a58085e24ad83308afee1784a3bf853d75093c1500ad46988f5865c106abdae938cfbd1fb10746cc1795ece7994fd7eba8a002158cf1bcd Size (firefox-60.3.0esr.source.tar.xz) = 268340600 bytes d39 2 @ 1.1 log @www/firefox60: import firefox60-60.1.0 Mozilla Firefox is a free, open-source and cross-platform web browser for Windows, Linux, MacOS X and many other operating systems. It is fast and easy to use, and offers many advantages over other web browsers, such as tabbed browsing and the ability to block pop-up windows. Firefox also offers excellent bookmark and history management, and it can be extended by developers using industry standards such as XML, CSS, JavaScript, C++, etc. Many extensions are available. This package provides Firefox 60 ESR. Securty fixes: #CVE-2018-12359: Buffer overflow using computed size of canvas element #CVE-2018-12360: Use-after-free when using focus() #CVE-2018-12361: Integer overflow in SwizzleData #CVE-2018-12362: Integer overflow in SSSE3 scaler #CVE-2018-5156: Media recorder segmentation fault when track type is changed during capture #CVE-2018-12363: Use-after-free when appending DOM nodes #CVE-2018-12364: CSRF attacks through 307 redirects and NPAPI plugins #CVE-2018-12365: Compromised IPC child process can list local filenames #CVE-2018-12371: Integer overflow in Skia library during edge builder allocation #CVE-2018-12366: Invalid data handling during QCMS transformations #CVE-2018-12367: Timing attack mitigation of PerformanceNavigationTiming #CVE-2018-12368: No warning when opening executable SettingContent-ms files #CVE-2018-12369: WebExtension security permission checks bypassed by embedded experiments #CVE-2018-5187: Memory safety bugs fixed in Firefox 60 and Firefox ESR 60.1 #CVE-2018-5188: Memory safety bugs fixed in Firefox 60, Firefox ESR 60.1, and Firefox ESR 52.9 @ text @d1 1 a1 1 $NetBSD: distinfo,v 1.319 2018/06/26 09:37:09 jperkin Exp $ d3 4 a6 4 SHA1 (firefox-60.1.0esr.source.tar.xz) = e7b9c954fdba527404b9b371f25890ec03d6a0ad RMD160 (firefox-60.1.0esr.source.tar.xz) = 3c8f71acc6e534069e5cd27d768ff5dff55d22a1 SHA512 (firefox-60.1.0esr.source.tar.xz) = 06c2d6d02086b77cc243eb4438d643cbc51fb766f1be8d5002bf77587d5c14145c6e26c1496c654b8ed1cc325cad29b049aac55a32f757d167d183bf73fff396 Size (firefox-60.1.0esr.source.tar.xz) = 268770652 bytes d10 1 @