diff options
author | Natanael Copa <ncopa@alpinelinux.org> | 2017-08-11 15:16:03 +0000 |
---|---|---|
committer | Natanael Copa <ncopa@alpinelinux.org> | 2017-08-11 18:34:40 +0000 |
commit | a8f61ee835d9aa73954e0b4069ced00e05a56ca3 (patch) | |
tree | 1f2b6c16dd941f94a8483fad74a6c863c98809be /community/biber | |
parent | 3249386fe330c51006e62c37838af2105be0e3d7 (diff) | |
download | aports-a8f61ee835d9aa73954e0b4069ced00e05a56ca3.tar.bz2 aports-a8f61ee835d9aa73954e0b4069ced00e05a56ca3.tar.xz |
community/firefox-esr: security upgrade to 52.3.0
fixes #7673
CVE-2017-7753: Out-of-bounds read with cached style data and
pseudo-elements
CVE-2017-7779: Memory safety bugs
CVE-2017-7784: Use-after-free with image observers
CVE-2017-7785: Buffer overflow manipulating ARIA attributes in DOM
CVE-2017-7786: Buffer overflow while painting non-displayable SVG
CVE-2017-7787: Same-origin policy bypass with iframes through page
reloads
CVE-2017-7791: Spoofing following page navigation with data: protocol
and modal alerts
CVE-2017-7792: Buffer overflow viewing certificates with an extremely
long OID
CVE-2017-7798: XUL injection in the style editor in devtools
CVE-2017-7800: Use-after-free in WebSockets during disconnection
CVE-2017-7801: Use-after-free with marquee during window resizing
CVE-2017-7802: Use-after-free resizing image elements
CVE-2017-7803: CSP containing 'sandbox' improperly applied
CVE-2017-7807: Domain hijacking through AppCache fallback
CVE-2017-7809: Use-after-free while deleting attached editor DOM node
Diffstat (limited to 'community/biber')
0 files changed, 0 insertions, 0 deletions