guix-mirrors/gnu
Ian Eure e4e3068124
gnu: librewolf: Update to 134.0.1-1 [security fixes].
New upstream release.  Some minor tweaks needed, like switching from gzip to
pigz, updating icu4c, and ensuring it builds with the correct Rust version.

CVE-2025-0237: WebChannel APIs susceptible to confused deputy attack
CVE-2025-0238: Use-after-free when breaking lines in text
CVE-2025-0239: Alt-Svc ALPN validation failure when redirected
CVE-2025-0240: Compartment mismatch when parsing JavaScript JSON
               module
CVE-2025-0241: Memory corruption when using JavaScript Text
               Segmentation
CVE-2025-0242: Memory safety bugs fixed in Firefox 134, Thunderbird
               134, Firefox ESR 115.19, Firefox ESR 128.6, Thunderbird
               115.19, and Thunderbird 128.6
CVE-2025-0243: Memory safety bugs fixed in Firefox 134, Thunderbird
               134, Firefox ESR 128.6, and Thunderbird 128.6
CVE-2025-0244: Address bar spoofing using an invalid protocol scheme
               on Firefox for Android
CVE-2025-0245: Lock screen setting bypass in Firefox Focus for Android
CVE-2025-0246: Address bar spoofing using an invalid protocol scheme
               on Firefox for Android
CVE-2025-0247: Memory safety bugs fixed in Firefox 134 and Thunderbird
               134

* gnu/packages/librewolf.scm (librewolf): Update to 134.0.1-1.

Change-Id: I027bf6f1541b0e7bec9116b2d6b39ab606813b23
Signed-off-by: Zheng Junjie <zhengjunjie@iscas.ac.cn>
2025-01-22 18:20:38 +08:00
..
bootloader
build
home gnu: home: home-pipewire: Add extra-content to configuration. 2025-01-22 09:32:18 +01:00
installer
machine
packages gnu: librewolf: Update to 134.0.1-1 [security fixes]. 2025-01-22 18:20:38 +08:00
services services: rottlog: Deprecate. 2025-01-16 22:30:02 +01:00
system
tests tests: minimal-desktop: Adjust to greetd 0.10.3. 2025-01-20 00:25:47 +01:00
artwork.scm
bootloader.scm
ci.scm
compression.scm
home.scm home: Add log rotation to ‘%base-home-services’. 2025-01-16 22:32:11 +01:00
image.scm
installer.scm
local.mk gnu: python-typing-inspect: Update to 0.9.0. 2025-01-20 21:38:04 +01:00
machine.scm
packages.scm
services.scm
system.scm system: Add zstd to ‘%base-packages’. 2025-01-16 22:30:01 +01:00
tests.scm tests: Run without the Linux kernel “quiet” argument. 2025-01-08 22:54:38 +01:00