Wed Dec 17 17:05:52 2008 UTC ()
Update firefox, firefox-bin and firefox-gtk1 to 2.0.0.19.

Security fixes in this version:

MFSA 2008-69 XSS vulnerabilities in SessionStore
MFSA 2008-68 XSS and JavaScript privilege escalation
MFSA 2008-67 Escaped null characters ignored by CSS parser
MFSA 2008-66 Errors parsing URLs with leading whitespace and control characters
MFSA 2008-65 Cross-domain data theft via script redirect error message
MFSA 2008-64 XMLHttpRequest 302 response disclosure
MFSA 2008-62 Additional XSS attack vectors in feed preview
MFSA 2008-61 Information stealing via loadBindingDocument
MFSA 2008-60 Crashes with evidence of memory corruption (rv:1.9.0.5/1.8.1.19)

For more info, see http://www.mozilla.com/en-US/firefox/2.0.0.19/releasenotes/


(ghen)
diff -r1.61 -r1.62 pkgsrc/www/firefox/Makefile-firefox.common
diff -r1.83 -r1.84 pkgsrc/www/firefox/distinfo
diff -r1.47 -r1.48 pkgsrc/www/firefox-bin/Makefile
diff -r1.46 -r1.47 pkgsrc/www/firefox-bin/distinfo

cvs diff -r1.61 -r1.62 pkgsrc/www/firefox/Attic/Makefile-firefox.common (expand / switch to unified diff)

--- pkgsrc/www/firefox/Attic/Makefile-firefox.common 2008/11/13 10:11:45 1.61
+++ pkgsrc/www/firefox/Attic/Makefile-firefox.common 2008/12/17 17:05:52 1.62
@@ -1,18 +1,18 @@ @@ -1,18 +1,18 @@
1# $NetBSD: Makefile-firefox.common,v 1.61 2008/11/13 10:11:45 ghen Exp $ 1# $NetBSD: Makefile-firefox.common,v 1.62 2008/12/17 17:05:52 ghen Exp $
2# used by www/firefox/Makefile 2# used by www/firefox/Makefile
3 3
4MOZILLA_BIN= firefox-bin 4MOZILLA_BIN= firefox-bin
5MOZ_VER= 2.0.0.18 5MOZ_VER= 2.0.0.19
6EXTRACT_SUFX= .tar.bz2 6EXTRACT_SUFX= .tar.bz2
7 7
8DISTNAME= firefox-${MOZ_VER}-source 8DISTNAME= firefox-${MOZ_VER}-source
9 9
10MASTER_SITES= ${MASTER_SITE_MOZILLA:=firefox/releases/${MOZ_VER}/source/} 10MASTER_SITES= ${MASTER_SITE_MOZILLA:=firefox/releases/${MOZ_VER}/source/}
11 11
12HOMEPAGE= http://www.mozilla.com/en-US/firefox/ 12HOMEPAGE= http://www.mozilla.com/en-US/firefox/
13 13
14PKG_DESTDIR_SUPPORT= user-destdir 14PKG_DESTDIR_SUPPORT= user-destdir
15 15
16DISTINFO_FILE= ${.CURDIR}/../../www/firefox/distinfo 16DISTINFO_FILE= ${.CURDIR}/../../www/firefox/distinfo
17PATCHDIR= ${.CURDIR}/../../www/firefox/patches 17PATCHDIR= ${.CURDIR}/../../www/firefox/patches
18 18

cvs diff -r1.83 -r1.84 pkgsrc/www/firefox/distinfo (expand / switch to unified diff)

--- pkgsrc/www/firefox/distinfo 2008/11/13 10:11:45 1.83
+++ pkgsrc/www/firefox/distinfo 2008/12/17 17:05:52 1.84
@@ -1,18 +1,18 @@ @@ -1,18 +1,18 @@
1$NetBSD: distinfo,v 1.83 2008/11/13 10:11:45 ghen Exp $ 1$NetBSD: distinfo,v 1.84 2008/12/17 17:05:52 ghen Exp $
2 2
3SHA1 (firefox-2.0.0.18-source.tar.bz2) = b92a727bf812a4548bc88ef9546492a8981fc09f 3SHA1 (firefox-2.0.0.19-source.tar.bz2) = 8c4f87c50a0ecf78530b6fbfaac3123196a260a9
4RMD160 (firefox-2.0.0.18-source.tar.bz2) = cf85398da9a006d72962dc4386d8bc7341942bdf 4RMD160 (firefox-2.0.0.19-source.tar.bz2) = e5bba299e7bc012a70956bcb253517b696a519b1
5Size (firefox-2.0.0.18-source.tar.bz2) = 40291897 bytes 5Size (firefox-2.0.0.19-source.tar.bz2) = 40298609 bytes
6SHA1 (patch-aa) = 5095449d4e979085fc5791b9d0251076b9c969c3 6SHA1 (patch-aa) = 5095449d4e979085fc5791b9d0251076b9c969c3
7SHA1 (patch-ab) = 19069a4e572744eccb04e9906e16dad28d2dac01 7SHA1 (patch-ab) = 19069a4e572744eccb04e9906e16dad28d2dac01
8SHA1 (patch-ac) = 96bee96d365d6a95d14031f4f1df9584b94d570b 8SHA1 (patch-ac) = 96bee96d365d6a95d14031f4f1df9584b94d570b
9SHA1 (patch-ad) = 20f2184a7e5e98b065e884c67e4c17fc52019a79 9SHA1 (patch-ad) = 20f2184a7e5e98b065e884c67e4c17fc52019a79
10SHA1 (patch-ae) = fea251aabc772c3d4ad3044c8295af45cc9cab2d 10SHA1 (patch-ae) = fea251aabc772c3d4ad3044c8295af45cc9cab2d
11SHA1 (patch-af) = 2500e35f74eab9ec16df7303fe8d1c2bff0a655b 11SHA1 (patch-af) = 2500e35f74eab9ec16df7303fe8d1c2bff0a655b
12SHA1 (patch-ag) = 1266333a482483f786d5f00e92e641e282266442 12SHA1 (patch-ag) = 1266333a482483f786d5f00e92e641e282266442
13SHA1 (patch-ah) = c737519c8ab8a66993d4892a6efac73e2da979f5 13SHA1 (patch-ah) = c737519c8ab8a66993d4892a6efac73e2da979f5
14SHA1 (patch-ai) = 58d7d87295cfbcaeba3e6a27457e15533d4b8e78 14SHA1 (patch-ai) = 58d7d87295cfbcaeba3e6a27457e15533d4b8e78
15SHA1 (patch-aj) = 84a5e3630c7dd9532bbb20e7444ff9582631ea24 15SHA1 (patch-aj) = 84a5e3630c7dd9532bbb20e7444ff9582631ea24
16SHA1 (patch-ak) = aa54e2c4d2f1c0d40bbbfcd6e3e55b44c3c549ff 16SHA1 (patch-ak) = aa54e2c4d2f1c0d40bbbfcd6e3e55b44c3c549ff
17SHA1 (patch-al) = e5fc425630a5363807bf1cc2c648d5eb31d0e40e 17SHA1 (patch-al) = e5fc425630a5363807bf1cc2c648d5eb31d0e40e
18SHA1 (patch-an) = 8b855be2d22422fcbf9293717ee45a8115e15bff 18SHA1 (patch-an) = 8b855be2d22422fcbf9293717ee45a8115e15bff

cvs diff -r1.47 -r1.48 pkgsrc/www/firefox-bin/Attic/Makefile (expand / switch to unified diff)

--- pkgsrc/www/firefox-bin/Attic/Makefile 2008/11/20 13:11:18 1.47
+++ pkgsrc/www/firefox-bin/Attic/Makefile 2008/12/17 17:05:52 1.48
@@ -1,17 +1,17 @@ @@ -1,17 +1,17 @@
1# $NetBSD: Makefile,v 1.47 2008/11/20 13:11:18 tron Exp $ 1# $NetBSD: Makefile,v 1.48 2008/12/17 17:05:52 ghen Exp $
2 2
3MOZILLA= firefox 3MOZILLA= firefox
4MOZ_VER= 2.0.0.18 4MOZ_VER= 2.0.0.19
5MOZ_DISTVER= ${MOZ_VER} 5MOZ_DISTVER= ${MOZ_VER}
6 6
7MAINTAINER= grant@NetBSD.org 7MAINTAINER= grant@NetBSD.org
8HOMEPAGE= http://www.mozilla.com/en-US/firefox/ 8HOMEPAGE= http://www.mozilla.com/en-US/firefox/
9COMMENT= Lightweight gecko-based web browser (binary package) 9COMMENT= Lightweight gecko-based web browser (binary package)
10 10
11DIST_SUBDIR= ${MOZILLA}/releases/${MOZ_DIR} 11DIST_SUBDIR= ${MOZILLA}/releases/${MOZ_DIR}
12 12
13EMUL_PLATFORMS= linux-i386 13EMUL_PLATFORMS= linux-i386
14EMUL_PLATFORMS+= solaris-i386 solaris-sparc 14EMUL_PLATFORMS+= solaris-i386 solaris-sparc
15 15
16PKG_DESTDIR_SUPPORT= user-destdir 16PKG_DESTDIR_SUPPORT= user-destdir
17 17

cvs diff -r1.46 -r1.47 pkgsrc/www/firefox-bin/Attic/distinfo (expand / switch to unified diff)

--- pkgsrc/www/firefox-bin/Attic/distinfo 2008/11/13 10:11:45 1.46
+++ pkgsrc/www/firefox-bin/Attic/distinfo 2008/12/17 17:05:52 1.47
@@ -1,5 +1,5 @@ @@ -1,5 +1,5 @@
1$NetBSD: distinfo,v 1.46 2008/11/13 10:11:45 ghen Exp $ 1$NetBSD: distinfo,v 1.47 2008/12/17 17:05:52 ghen Exp $
2 2
3SHA1 (firefox/releases/2.0.0.18/linux-i686/en-US/firefox-2.0.0.18.tar.gz) = c662cf2c6878bb4401f9d1959b18dede70080512 3SHA1 (firefox/releases/2.0.0.19/linux-i686/en-US/firefox-2.0.0.19.tar.gz) = a0aa99f5e29eb442bd81751e4aaad3920eeae6f1
4RMD160 (firefox/releases/2.0.0.18/linux-i686/en-US/firefox-2.0.0.18.tar.gz) = cee39efb0165a19d0fdcff9597b943cbf0703960 4RMD160 (firefox/releases/2.0.0.19/linux-i686/en-US/firefox-2.0.0.19.tar.gz) = d6c56000f343fd5aadaf2807c46398710572f9eb
5Size (firefox/releases/2.0.0.18/linux-i686/en-US/firefox-2.0.0.18.tar.gz) = 9708965 bytes 5Size (firefox/releases/2.0.0.19/linux-i686/en-US/firefox-2.0.0.19.tar.gz) = 9711461 bytes