Format: 1.7 Date: Wed, 26 Apr 2006 16:53:22 +0100 Source: firefox Binary: libnspr4 firefox-dom-inspector firefox-dev mozilla-firefox mozilla-firefox-dev libnss3 libnspr-dev firefox-gnome-support firefox-dbg libnss-dev firefox Architecture: all amd64 Version: 1.5.dfsg+1.5.0.2-0ubuntu1 Distribution: autobuild Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Ian Jackson Description: firefox - lightweight web browser based on Mozilla firefox-dbg - Debugging information for firefox firefox-dev - Development files for Mozilla Firefox firefox-dom-inspector - tool for inspecting the DOM of pages in Mozilla Firefox firefox-gnome-support - Support for Gnome in Mozilla Firefox libnspr-dev - Netscape Portable Runtime library - development files libnspr4 - Netscape Portable Runtime Library libnss-dev - Network Security Service Libraries - development libnss3 - Network Security Service Libraries - runtime mozilla-firefox - Transition package for firefox rename mozilla-firefox-dev - dummy transitional package Changes: firefox (1.5.dfsg+1.5.0.2-0ubuntu1) dapper; urgency=low . * New upstream version, 1.5.0.2. Described as `stability and security fixes' by upstream but many changes are included and producing a complete list is infeasible :-(. Fixes are known to be included for: - MFSA 2006-29, CVE-2006-1725: Spoofing with translucent windows - MFSA 2006-28, CVE-2006-1726: Security check of js_ValueToFunctionObject() can be circumvented - MFSA 2006-27, CVE-2006-0748: Table Rebuilding Code Execution Vulnerability - MFSA 2006-25, CVE-2006-1727: Privilege escalation through Print Preview - MFSA 2006-24, CVE-2006-1728: Privilege escalation using crypto.generateCRMFRequest - MFSA 2006-23, CVE-2006-1729: File stealing by changing input type - MFSA 2006-22, CVE-2006-1730: CSS Letter-Spacing Heap Overflow Vulnerability - MFSA 2006-20, CVE-2006-1529, CVE-2006-1530, CVE-2006-1531, CVE-2006-1723, CVE-2006-1724: Crashes with evidence of memory corruption. This package is based on Debian's firefox_1.5.dfsg+1.5.0.2.orig.tar.gz but has none of the corresponding Debian changes. Files: 7597b140ec20b40e4716b925c6bb2c08 9387268 web optional firefox_1.5.dfsg+1.5.0.2-0ubuntu1_amd64.deb b24f9ee3840498d6b265404fa0f8bbf1 213982 web optional firefox-dom-inspector_1.5.dfsg+1.5.0.2-0ubuntu1_amd64.deb 923bd06f2ea7d8dd8474e0a746660cc3 80226 web optional firefox-gnome-support_1.5.dfsg+1.5.0.2-0ubuntu1_amd64.deb c7b57e6b2d3036fd72d226a8d4c9d2a9 47214254 web optional firefox-dbg_1.5.dfsg+1.5.0.2-0ubuntu1_amd64.deb be017eee0c6b4c35ffee0f48fe3814d2 2792664 devel optional firefox-dev_1.5.dfsg+1.5.0.2-0ubuntu1_amd64.deb cf9ff987c15d2c36447d8fef582639d4 159726 libs optional libnspr4_1.firefox1.5.dfsg+1.5.0.2-0ubuntu1_amd64.deb b6b888197afc05d23ddab7197add606b 216660 libdevel optional libnspr-dev_1.firefox1.5.dfsg+1.5.0.2-0ubuntu1_amd64.deb 971eebcb56b2932f083437041873eedc 755272 libs optional libnss3_1.firefox1.5.dfsg+1.5.0.2-0ubuntu1_amd64.deb 1d71f4c4c5690ab76a222cd8e7023300 233624 libdevel optional libnss-dev_1.firefox1.5.dfsg+1.5.0.2-0ubuntu1_amd64.deb