Script 'mail_helper' called by obssrc
Hello community,

here is the log from the commit of package mozjs115 for openSUSE:Factory 
checked in at 2023-11-10 12:29:05
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/mozjs115 (Old)
 and      /work/SRC/openSUSE:Factory/.mozjs115.new.17445 (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Package is "mozjs115"

Fri Nov 10 12:29:05 2023 rev:5 rq:1124717 version:115.4.0

Changes:
--------
--- /work/SRC/openSUSE:Factory/mozjs115/mozjs115.changes        2023-10-03 
20:16:41.637594145 +0200
+++ /work/SRC/openSUSE:Factory/.mozjs115.new.17445/mozjs115.changes     
2023-11-10 12:29:36.460266732 +0100
@@ -1,0 +2,20 @@
+Thu Nov  9 08:37:08 UTC 2023 - Bjørn Lie <bjorn....@gmail.com>
+
+- Update to version 115.4.0:
+  + Various security fixes and other quality improvements.
+  + CVE-2023-5721: Queued up rendering could have allowed websites
+    to clickjack
+  + CVE-2023-5732: Address bar spoofing via bidirectional
+    characters
+  + CVE-2023-5724: Large WebGL draw could have led to a crash
+  + CVE-2023-5725: WebExtensions could open arbitrary URLs
+  + CVE-2023-5726: Full screen notification obscured by file open
+    dialog on macOS
+  + CVE-2023-5727: Download Protections were bypassed by .msix,
+    .msixbundle, .appx, and .appxbundle files on Windows
+  + CVE-2023-5728: Improper object tracking during GC in the
+    JavaScript engine could have led to a crash
+  + CVE-2023-5730: Memory safety bugs fixed in Firefox 119, Firefox
+    ESR 115.4, and Thunderbird 115.4.1
+
+-------------------------------------------------------------------

Old:
----
  firefox-115.3.1esr.source.tar.xz
  firefox-115.3.1esr.source.tar.xz.asc

New:
----
  firefox-115.4.0esr.source.tar.xz
  firefox-115.4.0esr.source.tar.xz.asc

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Other differences:
------------------
++++++ mozjs115.spec ++++++
--- /var/tmp/diff_new_pack.sRFVDs/_old  2023-11-10 12:29:40.868428423 +0100
+++ /var/tmp/diff_new_pack.sRFVDs/_new  2023-11-10 12:29:40.868428423 +0100
@@ -41,7 +41,7 @@
 %global big_endian 1
 %endif
 Name:           mozjs%{major}
-Version:        115.3.1
+Version:        115.4.0
 Release:        1%{?dist}
 Summary:        SpiderMonkey JavaScript library
 License:        MPL-2.0

++++++ firefox-115.3.1esr.source.tar.xz -> firefox-115.4.0esr.source.tar.xz 
++++++
/work/SRC/openSUSE:Factory/mozjs115/firefox-115.3.1esr.source.tar.xz 
/work/SRC/openSUSE:Factory/.mozjs115.new.17445/firefox-115.4.0esr.source.tar.xz 
differ: char 15, line 1

Reply via email to