firefox 3.6.19
Firefox Web Browser
http://www.mozilla.org/projects/firefox/
Packager: Gökçen Eraslan
License: MPL-1.1, NPL-1.1, GPLv2
Actions
Binary packages
Release history
Release | Release date | Version | Updater | Comment |
---|---|---|---|---|
138 | 2011-08-03 | 3.6.19 | Gökçen Eraslan | Version bump to 3.6.19: * Cookie isolation error * Multiple dangling pointer vulnerabilities * Integer overflow and arbitrary code execution in Array.reduceRight() * Memory corruption due to multipart/x-mixed-replace images * Use-after-free vulnerability when viewing XUL document with script disabled * Miscellaneous memory safety hazards * XSLT generate-id() function heap address leak * Directory traversal in resource: protocol * Escalation of privilege through Java Embedding Plugin * Information stealing via form history * Multiple dangling pointer vulnerabilities * Miscellaneous memory safety hazards |
137 | 2011-03-27 | 3.6.16 | Gökçen Eraslan | * Firefox 3.6.16 blacklists a few invalid HTTPS certificates. |
136 | 2011-03-11 | 3.6.15 | Gökçen Eraslan | Bump to latest security release to fix several security issues: * CSRF risk with plugins and 307 redirects * Crash caused by corrupted JPEG image * ParanoidFragmentSink allows javascript: URLs in chrome documents * Use-after-free error using Web Workers * Buffer overflow in JavaScript atom map * Buffer overflow in JavaScript upvarMap * Use-after-free error in JSON.stringify * Recursive eval call causes confirm dialogs to evaluate to true * Miscellaneous memory safety hazards * Fixed several stability issues. * Fixed an issue where some Java applets would fail to load in Firefox 3.6.14 |
135 | 2010-12-11 | 3.6.13 | Gökçen Eraslan | Bump to latest security release to fix several security issues, #15557: * XSS hazard in multiple character encodings * Location bar SSL spoofing using network error page * Incomplete fix for CVE-2010-0179 * Integer overflow vulnerability in NewIdArray * Use-after-free error with nsDOMAttribute MutationObserver * Java security bypass from LiveConnect loaded via data: URL meta refresh * Add support for OTS font sanitizer * Crash and remote code execution using HTML tags inside a XUL tree * Chrome privilege escalation with window.open and isindex element * Buffer overflow while line breaking after document.write with long string * Miscellaneous memory safety hazards |
134 | 2010-10-28 | 3.6.12 | Gökçen Eraslan | Bump to latest security release to fix CVE-2010-3765: * Interleaving document.write and appendChild can lead to duplicate text frames and overrunning of text run buffers. |
133 | 2010-10-20 | 3.6.11 | Gökçen Eraslan | - Version bump to new release and disable color profile support #14496 * MFSA 2010-72 Insecure Diffie-Hellman key exchange * MFSA 2010-71 Unsafe library loading vulnerabilities * MFSA 2010-70 SSL wildcard certificate matching IP addresses * MFSA 2010-69 Cross-site information disclosure via modal calls * MFSA 2010-68 XSS in gopher parser when parsing hrefs * MFSA 2010-67 Dangling pointer vulnerability in LookupGetterOrSetter * MFSA 2010-66 Use-after-free error in nsBarProp * MFSA 2010-65 Buffer overflow and memory corruption using document.write * MFSA 2010-64 Miscellaneous memory safety hazards |
132 | 2010-09-15 | 3.6.9 | Gökçen Eraslan | - Version bump to new release: * Introduced support for the X-FRAME-OPTIONS HTTP response header. Site owners can use this to mitigate clickjacking attacks by ensuring that their content is not embedded into other sites. * Fixed several security issues. * Fixed several stability issues. |
131 | 2010-08-05 | 3.6.8 | Gökçen Eraslan | - Version bump to new release: * Dangling pointer crash regression from plugin parameter array fix * Cross-origin data leakage from script filename in error messages * Cross-domain data theft using CSS * Multiple location bar spoofing vulnerabilities * Characters mapped to U+FFFD in 8 bit encodings cause subsequent character to vanish * Same-origin bypass using canvas context * Cross-origin data disclosure via Web Workers and importScripts * Remote code execution using malformed PNG image * nsTreeSelection dangling pointer remote code execution vulnerability * nsCSSValue::Array index integer overflow * Arbitrary code execution using SJOW and fast native function * Plugin parameter EnsureCachedAttrParamArrays remote code execution vulnerability * Use-after-free error in NodeIterator * DOM attribute cloning remote code execution vulnerability * Miscellaneous memory safety hazards (rv:1.9.2.7/ 1.9.1.11) |
130 | 2010-06-29 | 3.6.6 | Gökçen Eraslan | Version bump to new release which just increases hang detector timeout (http://www.mozilla.com/en-US/firefox/3.6.6/releasenotes/) |
129 | 2010-06-21 | 3.6.4 | Gökçen Eraslan | - Version bump to Firefox 3.6.4 - Firefox 3.6.4 provides uninterrupted browsing for users when there is a crash in plugins. |
128 | 2010-05-31 | 3.6.3 | Gökçen Eraslan | Add translate.pardus.org.tr to bookmarks toolbar by default. |
127 | 2010-05-22 | 3.6.3 | Gökçen Eraslan | Vergi kimlik no bookmark entry removed. |
126 | 2010-04-27 | 3.6.3 | Gökçen Eraslan | Version bump to new release |
125 | 2010-04-01 | 3.6.2 | Gökçen Eraslan | Version bump to new release |
124 | 2010-04-01 | 3.6 | Gökçen Eraslan | Version bump to new release |
123 | 2010-03-31 | 3.5.9 | Gökçen Eraslan | Bump to new security release: * XMLDocument::load() doesn't check nsIContentPolicy * Image src redirect to mailto: URL opens email editor * Update NSS to support TLS renegotiation indication * Chrome privilege escalation via forced URL drag and drop * Dangling pointer vulnerability in nsPluginArray * Dangling pointer vulnerability in nsTreeContentView * Remote code execution with use-after-free in nsTreeSelection * Crashes with evidence of memory corruption (rv:1.9.2.2/ 1.9.1.9/ 1.9.0.19) |
122 | 2010-02-23 | 3.5.8 | Gökçen Eraslan | Bump to new security release (#12316): * XSS hazard using SVG document and binary Content-Type * XSS due to window.dialogArguments being readable cross-domain * Use-after-free crash in HTML parser * Web Worker Array Handling Heap Corruption Vulnerability * Crashes with evidence of memory corruption (rv:1.9.1.8/ 1.9.0.18) |
121 | 2010-01-07 | 3.5.7 | Gökçen Eraslan | Version bump to new stability release: * DNS resolution in MakeSN of nsAuthSSPI causing issues for proxy servers that support NTLM auth |
120 | 2009-12-14 | 3.5.6 | Onur Küçük | Depend strictly on new cairo and gtk2, fixes bug (#11724) |
119 | 2009-12-14 | 3.5.6 | Gökçen Eraslan | Version bump to latest stable release and also fix Sabah newspaper and Calikbank(now Aktifbank) bookmark URIs. |
118 | 2009-10-30 | 3.5.4 | Gökçen Eraslan | Version bump to latest security release, #11473: * MFSA 2009-64 Crashes with evidence of memory corruption (rv:1.9.1.4/ 1.9.0.15) * MFSA 2009-63 Upgrade media libraries to fix memory safety bugs * MFSA 2009-62 Download filename spoofing with RTL override * MFSA 2009-61 Cross-origin data theft through document.getSelection() * MFSA 2009-59 Heap buffer overflow in string to number conversion * MFSA 2009-57 Chrome privilege escalation in XPCVariant::VariantDataToJS() * MFSA 2009-56 Heap buffer overflow in GIF color map parser * MFSA 2009-55 Crash in proxy auto-configuration regexp parsing * MFSA 2009-54 Crash with recursive web-worker calls * MFSA 2009-53 Local downloaded file tampering * MFSA 2009-52 Form history vulnerable to stealing |
117 | 2009-09-10 | 3.5.3 | Gökçen Eraslan | Version bump to latest security release, CVE-2009-3070, #1114 |
116 | 2009-08-11 | 3.5.2 | Gökçen Eraslan | Fix Turkish translation of user word. |
115 | 2009-08-10 | 3.5.2 | Gökçen Eraslan | * Images with ICC profiles now render properly on all monitors. * Several security issues: * Chrome privilege escalation due to incorrectly cached wrapper * Crashes with evidence of memory corruption (rv:1.9.1.2/1.9.0.13) * Location bar and SSL indicator spoofing via window.open() on invalid URL * Data corruption with SOCKS5 reply containing DNS name longer than 15 characters |
114 | 2009-07-27 | 3.5.1 | Gökçen Eraslan | Remove LD_PRELOAD hack for Flash fullscreen crash bug, now it's fixed in xulrunner via a jemalloc patch. |
113 | 2009-07-17 | 3.5.1 | Gökçen Eraslan | Do not remove main Firefox directory in postRemove, it's very dangerous while using delta. |
112 | 2009-07-17 | 3.5.1 | Gökçen Eraslan | Version bump to latest bugfix release. |
111 | 2009-07-17 | 3.5 | Ozan Çağlayan | Enable libgnomeui, update Dutch bookmarks. |
110 | 2009-06-30 | 3.5 | Gökçen Eraslan | Bump to 3.5 final release and remove redundant /etc/env.d/10MozillaFirefox file. |
109 | 2009-06-22 | 3.5_rc1 | Gökçen Eraslan | Install application icon from Mozilla tarball instead of the additional file. |
108 | 2009-06-19 | 3.5_rc1 | Gökçen Eraslan | Do not strip debug symbols, we need them in our debug packages. |
107 | 2009-06-13 | 3.5_rc1 | Gökçen Eraslan | Version bump to 3.5rc1 release and add LD_PRELOAD hack for fullscreen video crashes with nvidia cards. |
106 | 2009-05-26 | 3.5_beta4 | Gökçen Eraslan | Move spellchecking related stuff including zemberek patch to xulrunner |
105 | 2009-05-11 | 3.5_beta4 | Gökçen Eraslan | Version bump to 3.5 branch |
104 | 2009-05-01 | 3.0.10 | Gökçen Eraslan | Version bump to new security release and make Firefox xulrunner dependant |
103 | 2009-03-30 | 3.0.8 | Gökçen Eraslan | Version bump to new security release fixes CVE-2009-1044 and CVE-2009-1169 |
102 | 2009-03-09 | 3.0.7 | Gökçen Eraslan | With new zemberek patch, firefox now uses zemberek-server via DBus instead of socket, thanks to Faiksan. Fixes #4385. |
101 | 2009-03-05 | 3.0.7 | Gökçen Eraslan | Security patches for mozilla#448329 and mozilla#456757. |
100 | 2009-03-05 | 3.0.7 | Gökçen Eraslan | Version bump to new security release |
99 | 2009-03-03 | 3.0.6 | Ozan Çağlayan | Disable smooth scrolling as it slows down scrolling on low end computers and bad web sites. |
98 | 2009-03-02 | 3.0.6 | Gökçen Eraslan | Security patches for mozilla#448329 and mozilla#456757. |
97 | 2009-02-12 | 3.0.6 | Gökçen Eraslan | Fix IHA URL in bookmarks. |
96 | 2009-02-04 | 3.0.6 | Gökçen Eraslan | Version bump to new security release |
95 | 2009-01-30 | 3.0.5 | Gökçen Eraslan | Fallback to English bookmarks in pt_BR locale |
94 | 2008-12-26 | 3.0.5 | Gökçen Eraslan | * Comment and GenericName keys are updated in desktop file. * network.prefetch-next enabled as in default. * German bookmarks added by Mustafa Ölçerman * Use system hunspell instead of the bundled one * about:about URI removed as upstream suggested. |
93 | 2008-12-18 | 3.0.5 | Gökçen Eraslan | Version bump to security release |
92 | 2008-12-14 | 3.0.4 | Ozan Çağlayan | Fix a translation bug in CTRL+F toolbar. |
91 | 2008-11-26 | 3.0.4 | Ozan Çağlayan | Don't show about:rights if the user has already accepted EULA. |
90 | 2008-11-20 | 3.0.4 | Ozan Çağlayan | - Fixes the issue of missing mozilla plugins when KDE restores firefox upon logout (Fixes #7592), - Add ozgurlukicin.com as well as pardus.org.tr to the startup pages (Fixes #7172), - Fix several bugs in Turkish bookmarks and update some icons (Fixes #7987), - Fix several Turkish translation issues, - Remove EULA and add popup toolbar for showing user rights. - Use system sqlite instead of the one comes with Firefox |
89 | 2008-11-20 | 3.0.4 | Gökçen Eraslan | Version bump to 3.0.4 |
88 | 2008-11-11 | 3.0.3 | Gökçen Eraslan | Fix Turkish translation of Find in Edit menu |
87 | 2008-09-27 | 3.0.3 | Gökçen Eraslan | Version bump to fresh bugfix release |
86 | 2008-09-26 | 3.0.2 | Gökçen Eraslan | Version bump to 3.0.2 to fix severeal security issues |
85 | 2008-08-27 | 3.0.1 | Gökçen Eraslan | Swedish translations added |
84 | 2008-07-31 | 3.0.1 | Gökçen Eraslan | Fix font problems, do not set fixed and minimum font sizes to 12, 15 is OK for most of the web sites. Set serif type as DejaVu Serif, not DejaVu Sans. |
83 | 2008-07-17 | 3.0.1 | Gökçen Eraslan | Version bump from rc1 to stable release |
82 | 2008-07-14 | 3.0.1 | Gökçen Eraslan | Version bump, pl and ca locales added |
81 | 2008-06-18 | 3.0 | Gökçen Eraslan | Version bump to stable release |
80 | 2008-06-05 | 3.0_rc2 | Gökçen Eraslan | Version bump |
79 | 2008-05-23 | 3.0_rc1 | Gökçen Eraslan | Version bump |
78 | 2008-05-12 | 3.0_beta5 | Faik Uygur | Zemberek support |
77 | 2008-04-07 | 3.0_beta5 | Gökçen Eraslan | Some patches from SuSE and Ubuntu about reloading new plugins, default browser and no update |
76 | 2008-04-03 | 3.0_beta5 | Gökçen Eraslan | Version bump |
75 | 2008-03-22 | 3.0_beta4 | Gökçen Eraslan | Version bump |
74 | 2008-02-07 | 3.0_pre20080207 | İsmail Dönmez | Version bump |
73 | 2007-12-01 | 2.0.0.11 | İsmail Dönmez | Regression fix release |
72 | 2007-11-27 | 2.0.0.10 | İsmail Dönmez | Security update |
71 | 2007-11-15 | 2.0.0.9 | İsmail Dönmez | Fix Mozilla bug #369814 and #403331 |
70 | 2007-11-02 | 2.0.0.9 | İsmail Dönmez | Stable update |
69 | 2007-10-19 | 2.0.0.8 | İsmail Dönmez | Security update |
68 | 2007-10-02 | 2.0.0.6 | İsmail Dönmez | More updates to default bookmarks |
67 | 2007-09-01 | 2.0.0.6 | İsmail Dönmez | Updates to default bookmarks |
66 | 2007-08-26 | 2.0.0.6 | Eren Türkay | Add google linux search plugin |
65 | 2007-07-31 | 2.0.0.6 | İsmail Dönmez | Security update |
64 | 2007-07-25 | 2.0.0.5 | İsmail Dönmez | Fix wikipedia urls, bug #6133 |
63 | 2007-07-18 | 2.0.0.5 | İsmail Dönmez | Stable update |
62 | 2007-07-09 | 2.0.0.4 | İsmail Dönmez | Fix Mozilla bug #387333 and #363897 |
61 | 2007-07-08 | 2.0.0.4 | İsmail Dönmez | Revert last |
60 | 2007-07-08 | 2.0.0.4 | İsmail Dönmez | Fix #6016 |
59 | 2007-07-05 | 2.0.0.4 | Mehmet D. Akın | Fix slowdown on spellchecking large editboxes |
58 | 2007-06-20 | 2.0.0.4 | İsmail Dönmez | Fix Mozilla bug #381300 |
57 | 2007-05-30 | 2.0.0.4 | İsmail Dönmez | Stable update |
56 | 2007-05-30 | 2.0.0.3 | İsmail Dönmez | Sexify buttons and checkboxes |
55 | 2007-05-24 | 2.0.0.3 | İsmail Dönmez | Fix a problem with Turkish translation |
54 | 2007-05-22 | 2.0.0.3 | İsmail Dönmez | Generate .autoreg file while installing to fix #5006 and similar problems |
53 | 2007-05-13 | 2.0.0.3 | İsmail Dönmez | Add power patch from http://www.linuxpowertop.org/patches/firefox-2.0.patch |
52 | 2007-05-10 | 2.0.0.3 | İsmail Dönmez | Correct build date |
51 | 2007-03-26 | 2.0.0.3 | İsmail Dönmez | Fix #4449 |
50 | 2007-03-24 | 2.0.0.3 | Ahmet AYGÜN | Search plugin corrections. |
49 | 2007-03-21 | 2.0.0.3 | İsmail Dönmez | Stable update |
48 | 2007-03-05 | 2.0.0.2 | S.Çağlar Onur | Add pt_BR |
47 | 2007-02-23 | 2.0.0.2 | İsmail Dönmez | Fix Mozilla bug #371375 |
46 | 2007-02-23 | 2.0.0.2 | İsmail Dönmez | Stable update to fix multiple vulnerabilities |
45 | 2007-01-19 | 2.0.0.1 | S.Çağlar Onur | Enable shared libs as Furkan requested |
44 | 2006-12-21 | 2.0.0.1 | İsmail Dönmez | Revert last |
43 | 2006-12-21 | 2.0.0.1 | İsmail Dönmez | Re-enable visibility, it works on i386 |
42 | 2006-12-21 | 2.0.0.1 | İsmail Dönmez | Mimetype fixes |
41 | 2006-12-20 | 2.0.0.1 | İsmail Dönmez | Security update |
40 | 2006-12-12 | 2.0 | İsmail Dönmez | Support OpenOffice 1.x formats |
39 | 2006-12-12 | 2.0 | S.Çağlar Onur | Fix #3708 |
38 | 2006-12-09 | 2.0 | S.Çağlar Onur | Fix #4446 |
37 | 2006-12-08 | 2.0 | İsmail Dönmez | Fix pkgconfig files |
36 | 2006-12-03 | 2.0 | Faik Uygur | Use zemberek, heyo! |
35 | 2006-12-02 | 2.0 | İsmail Dönmez | Don't use aoss |
34 | 2006-11-28 | 2.0 | S.Çağlar Onur | Stable update |
33 | 2006-11-07 | 1.5.0.8 | İsmail Dönmez | Stable update |
32 | 2006-11-05 | 1.5.0.7 | İsmail Dönmez | Fix Uluzilla #2244 |
31 | 2006-09-15 | 1.5.0.7 | İsmail Dönmez | Version bump to fix various security bugs |
30 | 2006-07-31 | 1.5.0.5 | S.Çağlar Onur | Fix "ppdClose from /usr/lib/libcups.so.2" seg. fault |
29 | 2006-07-28 | 1.5.0.5 | S.Çağlar Onur | Version bump for several sec. fix, fix #2458 and add ~22 language to firefox |
28 | 2006-07-11 | 1.5.0.4 | İsmail Dönmez | Fix Milliyet's url |
27 | 2006-07-11 | 1.5.0.4 | S.Çağlar Onur | Fix #382, #1305, #2432. Remove hacky wrapper which means faster startup times, update preload file. Fix printing issues from upstream. Update some additional files |
26 | 2006-07-07 | 1.5.0.4 | İsmail Dönmez | Revert back min. font size to 12pt |
25 | 2006-06-23 | 1.5.0.4 | İsmail Dönmez | Make direct mms link work |
24 | 2006-06-20 | 1.5.0.4 | S.Çağlar Onur | fix #248, set font.minimum-size.* to 10 |
23 | 2006-06-19 | 1.5.0.4 | Gökmen Göksel | Set font.minimum-size.* to null |
22 | 2006-06-02 | 1.5.0.4 | İsmail Dönmez | Security/Bugfix release |
21 | 2006-05-01 | 1.5.0.2 | İsmail Dönmez | Fix mozilla bug #334515 |
20 | 2006-04-20 | 1.5.0.2 | S.Çağlar Onur | Version bump |
19 | 2006-04-07 | 1.5.0.1 | S.Çağlar Onur | fix #2458, cleanup and sync |
18 | 2006-03-25 | 1.5.0.1 | A. Murat Eren | Default bookmarks updated |
17 | 2006-03-07 | 1.5.0.1 | S.Çağlar Onur | Version bump |
16 | 2006-01-28 | 1.5.0 | İsmail Dönmez | Make all fonts Sans |
15 | 2006-01-18 | 1.5.0 | S.Çağlar Onur | Zemberek support by Faik Uygur |
14 | 2006-01-01 | 1.5.0 | İsmail Dönmez | Use system nss/nspr and fix upstream bug #305970 |
13 | 2005-12-31 | 1.5.0 | İsmail Dönmez | Fix all font problems |
12 | 2005-12-28 | 1.5.0 | İsmail Dönmez | Fix small font problems by always using X's dpi |
11 | 2005-11-30 | 1.5.0 | İsmail Dönmez | Final stable version for 1.5 |
10 | 2005-11-28 | 1.5_rc3 | İsmail Dönmez | Fix #265 |
9 | 2005-11-25 | 1.5_rc3 | İsmail Dönmez | Add default mimetypes |
8 | 2005-11-18 | 1.5_rc3 | İsmail Dönmez | Update to version 1.5rc3, fix GTK+ 2.8 support and enable SVG |
7 | 2005-11-11 | 1.5_rc2 | İsmail Dönmez | Update to version 1.5rc2 |
6 | 2005-11-05 | 1.5_rc1 | İsmail Dönmez | Update translations |
5 | 2005-11-02 | 1.5_rc1 | İsmail Dönmez | Update to version 1.5rc1 |
4 | 2005-11-01 | 1.5_beta2 | S.Çağlar Onur | Add preload support for rootfs 0.2 |
3 | 2005-10-14 | 1.5_beta2 | Bahadır Kandemir | Uluzilla search plugin added. |
2 | 2005-08-10 | 1.5_beta2 | S.Çağlar Onur | firefox-devel depens firefox |
1 | 2005-08-10 | 1.5_beta2 | S.Çağlar Onur | Initial import |
Patches
mozconfig.patchsuse/firefox-appname.patch
suse/firefox-kde.patch
suse/firefox-browser-css.patch
suse/firefox-ui-lockdown.patch
suse/firefox-cross-desktop.patch
pardus/fix-kde-session.patch
pardus/as-needed.diff
pardus/fix-downloaddir-translation.diff
pardus/fix-double-turkish-option.diff
pardus/autoconf-213-hack.diff