Accepted xulrunner 1.8.0.15~pre080131b-0etch1 (source all amd64)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Fri, 08 Feb 2008 11:10:04 +0100
Source: xulrunner
Binary: libmozjs0d-dbg libnspr4-0d-dbg libxul0d-dbg xulrunner libnspr4-dev libxul0d libnss3-tools xulrunner-gnome-support libnspr4-0d libsmjs-dev libnss3-0d libmozjs0d libmozjs-dev python-xpcom libnss3-0d-dbg libxul-common libmozillainterfaces-java spidermonkey-bin libnss3-dev libxul-dev libsmjs1
Architecture: source all amd64
Version: 1.8.0.15~pre080131b-0etch1
Distribution: stable-security
Urgency: critical
Maintainer: Mike Hommey <glandium@debian.org>
Changed-By: Alexander Sack <asac@debian.org>
Description:
libmozillainterfaces-java - XPCOM bindings for Java
libmozjs-dev - Development files for the Mozilla SpiderMonkey JavaScript library
libmozjs0d - The Mozilla SpiderMonkey JavaScript library
libmozjs0d-dbg - Development files for the Mozilla SpiderMonkey JavaScript library
libnspr4-0d - NetScape Portable Runtime Library
libnspr4-0d-dbg - Development files for the NetScape Portable Runtime library
libnspr4-dev - Development files for the NetScape Portable Runtime library
libnss3-0d - Network Security Service libraries
libnss3-0d-dbg - Development files for the Network Security Service libraries
libnss3-dev - Development files for the Network Security Service libraries
libnss3-tools - Network Security Service tools
libsmjs-dev - Migration package for the Mozilla SpiderMonkey JavaScript library
libsmjs1 - Migration package for the Mozilla SpiderMonkey JavaScript library
libxul-common - Gecko engine library - common files
libxul-dev - Development files for the Gecko engine library
libxul0d - Gecko engine library
libxul0d-dbg - Development files for the Gecko engine library
python-xpcom - XPCOM bindings for Python
spidermonkey-bin - The SpiderMonkey Interpreter
xulrunner - XUL + XPCOM application runner
xulrunner-gnome-support - Support for Gnome in xulrunner applications
Changes:
xulrunner (1.8.0.15~pre080131b-0etch1) stable-security; urgency=critical
.
[ Alexander Sack ]
* New security/stability upstream release (backports for v2.0.0.12)
* MFSA 2008-01 aka CVE-2008-0412: Crashes with evidence of memory corruption
v1.8.1.12 (Browser crashes)
* MFSA 2008-01 aka CVE-2008-0413: Crashes with evidence of memory corruption
v1.8.1.12 (javascript crashes)
* MFSA 2008-02 aka CVE-2008-0414: Multiple file input focus stealing
vulnerabilities: 1. Focus shifting bugs and 2. Selective keystroke
blocking bugs
* MFSA 2008-03 aka CVE-2008-0415: Privilege escalation, XSS, Remote Code
Execution (JavaScript privilege escalation bugs)
* MFSA 2008-04 aka CVE-2008-0417: Stored password corruption
* MFSA 2008-05 aka CVE-2008-0418: Directory traversal via chrome: URI
* MFSA 2008-06 aka CVE-2008-0419: Web browsing history and forward
navigation stealing
* MFSA 2008-08 aka CVE-2008-0591: File action dialog tampering
* MFSA 2008-09 aka CVE-2008-0592: Mishandling of locally-saved plain text
files
* MFSA 2008-10 aka CVE-2008-0593: URL token stealing via stylesheet redirect
* MFSA 2008-11 aka CVE-2008-0594: Web forgery overwrite with div overlay
Files:
3be3e9cea71684c38875204f26b4991f 1984 devel optional xulrunner_1.8.0.15~pre080131b-0etch1.dsc
d79eb23c39acecdd77b75e21f60f1ed7 42973580 devel optional xulrunner_1.8.0.15~pre080131b.orig.tar.gz
71b08cb7e88e9979cc95f8b266f32314 146050 devel optional xulrunner_1.8.0.15~pre080131b-0etch1.diff.gz
de905a84614b3cb44f5fd54ebd416e2d 206794 libdevel optional libnspr4-dev_1.8.0.15~pre080131b-0etch1_all.deb
af6d7a398fb5eabbc9f581d0c8c7f7ed 176062 libdevel optional libmozjs-dev_1.8.0.15~pre080131b-0etch1_all.deb
dc71cd4970b2cb41d13e39d03936a61a 35784 libs optional libsmjs1_1.8.0.15~pre080131b-0etch1_all.deb
1dc6f6b43e6cc7c38acd8943ef86d697 35822 libdevel optional libsmjs-dev_1.8.0.15~pre080131b-0etch1_all.deb
ffe37ceeea4eda6261b77d25ec6b3f38 1050378 libs optional libxul-common_1.8.0.15~pre080131b-0etch1_all.deb
2387467e43b34edc7e5bdabd0cd5f756 2634120 libdevel optional libxul-dev_1.8.0.15~pre080131b-0etch1_all.deb
1ca1b510e995e263ed9354e66f4528eb 230362 libdevel optional libnss3-dev_1.8.0.15~pre080131b-0etch1_all.deb
8acd28a5da001860fb32d956a0c88c45 1029436 libdevel extra libmozillainterfaces-java_1.8.0.15~pre080131b-0etch1_all.deb
7fa6328b4d0d66fcd1b1908fcfe5fe9f 277434 devel optional xulrunner_1.8.0.15~pre080131b-0etch1_amd64.deb
35d18dd0fdbc3948e696a6fe4d12afc1 68282 devel optional xulrunner-gnome-support_1.8.0.15~pre080131b-0etch1_amd64.deb
6e083997dd2452e26982fc0dd2c8e719 147864 libs optional libnspr4-0d_1.8.0.15~pre080131b-0etch1_amd64.deb
69dec62893e18e9dda4ef28f9832ee7c 303680 libdevel extra libnspr4-0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
041297ad5a40f025fef6c235a94afb43 354708 libs optional libmozjs0d_1.8.0.15~pre080131b-0etch1_amd64.deb
c8c962830a17b8ab975d8aeef960e803 753432 libdevel extra libmozjs0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
7de4f3fe458386edce1c1e832476e64e 52062 interpreters optional spidermonkey-bin_1.8.0.15~pre080131b-0etch1_amd64.deb
7b8f4db75a18132fac5b103d12d81d3c 6328008 libs optional libxul0d_1.8.0.15~pre080131b-0etch1_amd64.deb
ec7a996914e129b796acfcb86abac487 45147940 libdevel extra libxul0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
a99f3db09934b7bdd3e00ebe81889f66 808492 libs optional libnss3-0d_1.8.0.15~pre080131b-0etch1_amd64.deb
6587efbb34209f66048072eb052ab833 669644 admin optional libnss3-tools_1.8.0.15~pre080131b-0etch1_amd64.deb
7426545d5a3f56ce648019a76d8c0867 3174014 libdevel extra libnss3-0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
c50e21bfbf2edfc9277c67caa0ac163b 125210 python extra python-xpcom_1.8.0.15~pre080131b-0etch1_amd64.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)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=C/+L
-----END PGP SIGNATURE-----
Accepted:
libmozillainterfaces-java_1.8.0.15~pre080131b-0etch1_all.deb
to pool/main/x/xulrunner/libmozillainterfaces-java_1.8.0.15~pre080131b-0etch1_all.deb
libmozjs-dev_1.8.0.15~pre080131b-0etch1_all.deb
to pool/main/x/xulrunner/libmozjs-dev_1.8.0.15~pre080131b-0etch1_all.deb
libmozjs0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/libmozjs0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
libmozjs0d_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/libmozjs0d_1.8.0.15~pre080131b-0etch1_amd64.deb
libnspr4-0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/libnspr4-0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
libnspr4-0d_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/libnspr4-0d_1.8.0.15~pre080131b-0etch1_amd64.deb
libnspr4-dev_1.8.0.15~pre080131b-0etch1_all.deb
to pool/main/x/xulrunner/libnspr4-dev_1.8.0.15~pre080131b-0etch1_all.deb
libnss3-0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/libnss3-0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
libnss3-0d_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/libnss3-0d_1.8.0.15~pre080131b-0etch1_amd64.deb
libnss3-dev_1.8.0.15~pre080131b-0etch1_all.deb
to pool/main/x/xulrunner/libnss3-dev_1.8.0.15~pre080131b-0etch1_all.deb
libnss3-tools_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/libnss3-tools_1.8.0.15~pre080131b-0etch1_amd64.deb
libsmjs-dev_1.8.0.15~pre080131b-0etch1_all.deb
to pool/main/x/xulrunner/libsmjs-dev_1.8.0.15~pre080131b-0etch1_all.deb
libsmjs1_1.8.0.15~pre080131b-0etch1_all.deb
to pool/main/x/xulrunner/libsmjs1_1.8.0.15~pre080131b-0etch1_all.deb
libxul-common_1.8.0.15~pre080131b-0etch1_all.deb
to pool/main/x/xulrunner/libxul-common_1.8.0.15~pre080131b-0etch1_all.deb
libxul-dev_1.8.0.15~pre080131b-0etch1_all.deb
to pool/main/x/xulrunner/libxul-dev_1.8.0.15~pre080131b-0etch1_all.deb
libxul0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/libxul0d-dbg_1.8.0.15~pre080131b-0etch1_amd64.deb
libxul0d_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/libxul0d_1.8.0.15~pre080131b-0etch1_amd64.deb
python-xpcom_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/python-xpcom_1.8.0.15~pre080131b-0etch1_amd64.deb
spidermonkey-bin_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/spidermonkey-bin_1.8.0.15~pre080131b-0etch1_amd64.deb
xulrunner-gnome-support_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/xulrunner-gnome-support_1.8.0.15~pre080131b-0etch1_amd64.deb
xulrunner_1.8.0.15~pre080131b-0etch1.diff.gz
to pool/main/x/xulrunner/xulrunner_1.8.0.15~pre080131b-0etch1.diff.gz
xulrunner_1.8.0.15~pre080131b-0etch1.dsc
to pool/main/x/xulrunner/xulrunner_1.8.0.15~pre080131b-0etch1.dsc
xulrunner_1.8.0.15~pre080131b-0etch1_amd64.deb
to pool/main/x/xulrunner/xulrunner_1.8.0.15~pre080131b-0etch1_amd64.deb
xulrunner_1.8.0.15~pre080131b.orig.tar.gz
to pool/main/x/xulrunner/xulrunner_1.8.0.15~pre080131b.orig.tar.gz
Reply to: