-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Thu, 31 May 2007 11:01:11 +0100 Source: firefox Binary: libnspr4 firefox-dom-inspector firefox-dev mozilla-firefox mozilla-firefox-dev libnss3 libnspr-dev firefox-gnome-support firefox-dbg libnss-dev firefox Architecture: all i386 Version: 1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1 Distribution: dapper-security Urgency: low Maintainer: Ubuntu/i386 Build Daemon Changed-By: Alexander Sack Description: firefox - lightweight web browser based on Mozilla firefox-dbg - Debugging information for firefox firefox-dev - Development files for Mozilla Firefox firefox-dom-inspector - tool for inspecting the DOM of pages in Mozilla Firefox firefox-gnome-support - Support for Gnome in Mozilla Firefox libnspr-dev - Netscape Portable Runtime library - development files libnspr4 - Netscape Portable Runtime Library libnss-dev - Network Security Service Libraries - development libnss3 - Network Security Service Libraries - runtime mozilla-firefox - Transition package for firefox rename mozilla-firefox-dev - dummy transitional package Changes: firefox (1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1) dapper-security; urgency=low . * New upstream stability/security release * MFSA2007-17 aka CVE-2007-2871: XUL Popup Spoofing * MFSA2007-16 aka CVE-2007-2870: XSS using addEventListener * MFSA2007-14 aka CVE-2007-1362: Path Abuse in Cookies * MFSA2007-13 aka CVE-2007-2869: Persistent Autocomplete Denial of Service * MFSA2007-12 aka CVE-2007-2867 (layout engine) + CVE-2007-2868 (javascript engine): Crashes with evidence of memory corruption Files: 0ea991cac8bd862c8cc5e395ff0cd257 7951260 web optional firefox_1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_i386.deb 938d59e4f9119076bc5a9c4f86dfc6d2 211016 web optional firefox-dom-inspector_1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_i386.deb 56cb5360d18836b7d26caefb0777d980 76360 web optional firefox-gnome-support_1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_i386.deb 69b38159095a014335251f54b590c2af 51554 web optional mozilla-firefox_1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_all.deb f7ed2076958f3368abed368b404b00ac 44032500 web optional firefox-dbg_1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_i386.deb 63905992293569aa8007858cf0eb392e 2806090 devel optional firefox-dev_1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_i386.deb 8b8507aa080a14a56d5920318951b5ad 50668 devel optional mozilla-firefox-dev_1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_all.deb f721e39bf6fd17b9071132f7fd907eff 148274 libs optional libnspr4_1.firefox1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_i386.deb babaa89307690d608e1e09401164ba8d 220666 libdevel optional libnspr-dev_1.firefox1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_i386.deb a3ad4cbb948feb8112bc8b665240135a 714984 libs optional libnss3_1.firefox1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_i386.deb 423da752a848362c0adb43a46f1dc4f0 245764 libdevel optional libnss-dev_1.firefox1.5.dfsg+1.5.0.12-0ubuntu0.6.06.1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.2 (GNU/Linux) iD8DBQFGX28n0N0xjzyQZEIRAu8CAJwNjPQlN54Vm85RiW9UzDt8NoXFUwCfUI0Z 6gJzqzgCB1qB4qWub9MJtnM= =ZWYR -----END PGP SIGNATURE-----