security upgrade of seamonkey 1.1.12
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
seamonkey (Ubuntu) |
Fix Released
|
Undecided
|
Fabien Tassin | ||
Hardy |
Fix Released
|
Undecided
|
Fabien Tassin | ||
Intrepid |
Fix Released
|
Undecided
|
Fabien Tassin |
Bug Description
Binary package hint: seamonkey
seamonkey (1.1.12+
* New security upstream release: 1.1.12
- CVE-2008-4070: Heap overflow when canceling newsgroup message
- CVE-2008-4069: XBM image uninitialized memory reading
- CVE-2008-
- CVE-2008-
- CVE-2008-
- CVE-2008-
- CVE-2008-3837: Forced mouse drag
- CVE-2008-3835: nsXMLDocument:
- CVE-2008-0016: UTF-8 URL stack buffer overflow
-- Fabien Tassin <email address hidden> Tue, 30 Sep 2008 00:41:24 +0200
===
seamonkey (1.1.12+
* New security upstream release: 1.1.12 (LP: #276437)
- CVE-2008-4070: Heap overflow when canceling newsgroup message
- CVE-2008-4069: XBM image uninitialized memory reading
- CVE-2008-
- CVE-2008-
- CVE-2008-
- CVE-2008-
- CVE-2008-3837: Forced mouse drag
- CVE-2008-3835: nsXMLDocument:
- CVE-2008-0016: UTF-8 URL stack buffer overflow
* Also includes security fixes from 1.1.11 and 1.1.10 (LP: #218534)
- CVE-2008-2785: Remote code execution by overflowing CSS reference counter
- CVE-2008-2811: Crash and remote code execution in block reflow
- CVE-2008-2810: Remote site run as local file via Windows URL shortcut
- CVE-2008-2809: Peer-trusted certs can use alt names to spoof
- CVE-2008-2808: File location URL in directory listings not escaped properly
- CVE-2008-2807: Faulty .properties file results in uninitialized memory being used
- CVE-2008-2806: Arbitrary socket connections with Java LiveConnect on Mac OS X
- CVE-2008-2805: Arbitrary file upload via originalTarget and DOM Range
- MFSA 2008-26 (follow-up of CVE-2008-0304): Buffer length checks in MIME processing
- CVE-2008-2803: Arbitrary code execution in mozIJSSubScript
- CVE-2008-2802: Chrome script loading from fastload file
- CVE-2008-2801: Signed JAR tampering
- CVE-2008-2800: XSS through JavaScript same-origin violation
- CVE-2008-
- CVE-2008-1380: Crash in JavaScript garbage collector
* Refresh diverged patch:
- update debian/
* Fix FTBFS with missing -lfontconfig
- add debian/
- update debian/
-- Fabien Tassin <email address hidden> Tue, 30 Sep 2008 22:44:30 +0200
Changed in seamonkey: | |
assignee: | nobody → fta |
assignee: | nobody → fta |
Changed in seamonkey: | |
status: | Fix Committed → Fix Released |
Here is the full debdiff for intrepid. There's no packaging change, just the upstream bump. 1.1.12+ nobinonly- 0ubuntu1~ fta1
Preview debs are in my PPA as seamonkey_
Here is a diffstat of that debdiff:
ix:~/tmp$ diffstat seamonkey_ 1.1.11+ nobinonly- 0ubuntu1- -1.1.12+ nobinonly- 0ubuntu1. debdiff config/ version. txt | 2 milestone. txt | 2 base/src/ nsDocument. cpp | 1 base/src/ nsDocument. h | 5 base/src/ nsXMLHttpReques t.cpp | 5 html/content/ src/Makefile. in | 1 html/content/ src/nsHTMLTable CellElement. cpp | 4 xbl/src/ nsXBLService. cpp | 10 xml/document/ src/nsXMLDocume nt.cpp | 48 - xml/document/ src/nsXMLDocume nt.h | 1 base/nsGlobalWi ndow.cpp | 58 + base/nsJSUtils. cpp | 42 - base/nsJSUtils. h | 3 schema- validation/ src/nsSchemaVal idator. cpp | 21 schema- validation/ src/nsSchemaVal idatorUtils. cpp | 56 + schema- validation/ src/nsSchemaVal idatorUtils. h | 12 schema- validation/ tests/schema. html | 11 transformiix/ source/ xpath/XFormsFun ctionCall. cpp | 185 ++++++ transformiix/ source/ xpath/XFormsFun ctions. h | 48 - transformiix/ source/ xpath/nsIXForms UtilityService. h | 43 + transformiix/ source/ xpath/nsXFormsX PathEvaluator. cpp | 20 transformiix/ source/ xpath/txXPathAt omList. h | 6 transformiix/ source/ xslt/txMozillaT extOutput. cpp | 17 transformiix/ source/ xslt/txMozillaX MLOutput. cpp | 11 xforms/ Makefile. in | 1 xforms/ install. rdf | 1 xforms/ nsIModelElement Private. idl | 8 xforms/ nsXFormsAtoms. cpp | 4 xforms/ nsXFormsAtoms. h | 1 xforms/ nsXFormsDOMEven t.cpp | 23 xforms/ nsXFormsDOMEven t.h | 5 xforms/ nsXFormsInsertD eleteElement. cpp | 9 xforms/ nsXFormsInstanc eElement. cpp | 186 ++++-- xforms/ nsXFormsInstanc eElement. h | 7 xforms/ nsXFormsModelEl ement.cpp | 15 xforms/ nsXFormsSchemaV alidator. cpp | 20 xforms/ nsXFormsSchemaV alidator. h | 3 xforms/ nsXFormsSubmiss ionElemen. ..
browser/
client.mk | 10
config/
content/
content/
content/
content/
content/
content/
content/
content/
debian/changelog | 15
dom/src/
dom/src/
dom/src/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/
extensions/