Accepted mozilla-thunderbird 1.0.6-0ubuntu1 (source)
Adam Conrad
adconrad at ubuntu.com
Wed Jul 27 15:45:08 CDT 2005
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Thu, 28 Jul 2005 03:50:50 +1000
Source: mozilla-thunderbird
Binary: mozilla-thunderbird-dev mozilla-thunderbird-inspector mozilla-thunderbird mozilla-thunderbird-typeaheadfind mozilla-thunderbird-offline
Architecture: source
Version: 1.0.6-0ubuntu1
Distribution: breezy
Urgency: low
Maintainer: Alexander Sack <asac at debian.org>
Changed-By: Adam Conrad <adconrad at ubuntu.com>
Description:
mozilla-thunderbird - Mozilla Thunderbird standalone mail client
mozilla-thunderbird-dev - mozilla thunderbird development files
mozilla-thunderbird-inspector - mozilla thunderbird dom inspector extension
mozilla-thunderbird-offline - mozilla thunderbird offline extension
mozilla-thunderbird-typeaheadfind - mozilla thunderbird typeaheadfind extension
Changes:
mozilla-thunderbird (1.0.6-0ubuntu1) breezy; urgency=low
.
* SECURITY UPDATE: Upgrade to stable 1.0.6 version to fix several
vulnerabilities.
- CAN-2005-0989, MFSA-2005-33: Javascript "lambda" replace exposes memory
contents.
- CAN-2005-1159, MFSA-2005-40: Missing Install object instance checks.
- CAN-2005-1160, MFSA 2005-41: Privilege escalation via DOM property
overrides.
- CAN-2005-1532, MFSA-2005-44: Privilege escalation via non-DOM property
overrides.
- CAN-2005-2261, MFSA-2005-46: XBL scripts ran even when Javascript
disabled.
- CAN-2005-2265, MFSA-2005-50: Fix type checking in
InstallVersion.compareTo.
- CAN-2005-2266, MFSA-2005-52: Same origin violation: frame calling
top.focus().
- CAN-2005-2269, MFSA-2005-55: XHTML node spoofing.
- CAN-2005-2270, MFSA 2005-56: Code execution through shared function
objects.
* CAN-2005-2353: Add patch from Debian to fix insecure tempfile handling
in /usr/lib/mozilla-thunderbird/run-mozilla.sh
* Add patch from Debian to allow compilation with gcc-4.0.
* Disable xprint, as breezy isn't shipping with it.
* Added CAN numbers to previous changelog.
Files:
d5c365f350d7c314e6268e05dc260ada 934 mail optional mozilla-thunderbird_1.0.6-0ubuntu1.dsc
c28fc1fd78785b5264e9830b7be6f8ea 32933620 mail optional mozilla-thunderbird_1.0.6.orig.tar.gz
f8c6461c598ef5ec3c03dcfc201ad7aa 74434 mail optional mozilla-thunderbird_1.0.6-0ubuntu1.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)
iD8DBQFC5+w+vjztR8bOoMkRAtNTAJ97ZI2BESbv/mDjVJqPDZhKKPJ1hACcC5Be
ZCRIU7JV+6Xk/OvV5fXBouI=
=Ohg1
-----END PGP SIGNATURE-----
Accepted:
mozilla-thunderbird_1.0.6-0ubuntu1.diff.gz
to pool/main/m/mozilla-thunderbird/mozilla-thunderbird_1.0.6-0ubuntu1.diff.gz
mozilla-thunderbird_1.0.6-0ubuntu1.dsc
to pool/main/m/mozilla-thunderbird/mozilla-thunderbird_1.0.6-0ubuntu1.dsc
mozilla-thunderbird_1.0.6.orig.tar.gz
to pool/main/m/mozilla-thunderbird/mozilla-thunderbird_1.0.6.orig.tar.gz
More information about the breezy-changes
mailing list