Alerts This Week
Warning Icon 1 923
Alerts This Week
Warning Icon 1 923

Fedora 36 Advisory: Icecat Critical Fix for Firefox 2022-42ea499a7d

fedora
Calendar Grey March 17, 2022
Dist Fedora Esm H88
The latest icecat update on Fedora 36 brings significant security enhancements by incorporating Firefox patches, effectively resolving critical vulnerabilities and bugs.
This update provides the latest release of Firefox, with many bug fixes including critical security issues

Summary

GNU IceCat is the GNU version of the Firefox ESR browser.

Extensions included to this version of IceCat:

* LibreJS

GNU LibreJS aims to address the JavaScript problem described in the article

"The JavaScript Trap" of Richard Stallman.

* HTTPS Everywhere

HTTPS Everywhere is an extension that encrypts your communications with

many major websites, making your browsing more secure.

* ViewTube

Watch videos from video sharing websites with extra options.

* A set of companion extensions for LibreJS by Nathan Nichols

are pre-installed, and provide workarounds to use some services at USPS,

RSF.org, SumOfUs.org, pay.gov, McDonalds, goteo.org and Google Docs

without using nonfree JavaScript.

* A series of configuration changes and tweaks were applied to ensure that

IceCat does not initiate network connections that the user has not explicitly

requested. This implies not downloading feeds, updates, blacklists or any

other similar data needed during startup.

This update provides the latest release of Firefox, with many bug fixes

including critical security issues. It also includes updates to gcc and annobin

which were necessary to build Firefox, with the following fixes: * fix up

promoted SUBREG handling (#2045160, PR rtl-optimization/104839) * fix up check

for asm goto (PR rtl-optimization/104777) * Upstream bugs

() fixed: 70077, 79493, 80270, 84519, 87496, 88134,

90148, 91384, 96526, 99297, 99555, 99585, 100400, 100407, 100541, 100757,

101325, 101636, 101983, 102276, 102429, 103037, 103302, 103443, 103521, 103836,

103845, 103856, 103984, 104061, 104121, 104131, 104132, 104133, 104154, 104208,

104381, 104430, 104434, 104489, 104529, 104533, 104540, 104550, 104552, 104558,

104573, 104589, 104601, 104602, 104618, 104619, 104627, 104633, 104637, 104644,

104648, 104656, 104659, 104664, 104667, 104674, 104675, 104676, 104677, 104679,

104681, 104682, 104686, 104687, 104698, 104700, 104704, 104715, 104716, 104721,

104724, 104725, 104726, 104727, 104728, 104730, 104732, 104736, 104748, 104757,

104758, 104761, 104775, 104779, 104781, 104782, 104784, 104791, 104794, 104797,

104807, 104825, 104838

* Tue Mar 8 2022 Antonio Trande - 91.7.0-1.rh1

- Release 91.7.0

* Sun Mar 6 2022 Antonio Trande - 91.6.1-1.rh1

- Release 91.6.1

* Fri Feb 18 2022 Antonio Trande - 91.6.0-2.rh1

- Patched for GCC-12

* Tue Feb 15 2022 Antonio Trande - 91.6.0-1.rh1

- Release 91.6.0

* Sat Feb 5 2022 Jiri Vanek - 91.5.0-4.rh1

- Rebuilt for java-17-openjdk as system jdk

* Tue Jan 25 2022 Parag Nemade - 91.5.0-3.rh1

- Update hunspell directory path

F36 Change https://fedoraproject.org/wiki/Changes/Hunspell_dictionary_dir_change

* Thu Jan 20 2022 Fedora Release Engineering - 91.5.0-2.rh1

- Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild

[ 1 ] Bug #2045160 - Cython: FTBFS in Fedora rawhide/f36 ppc64le

https://bugzilla.redhat.com/show_bug.cgi?id=2045160

[ 2 ] Bug #2045380 - firefox: FTBFS in Fedora rawhide/f36

https://bugzilla.redhat.com/show_bug.cgi?id=2045380

[ 3 ] Bug #2045404 - game-music-emu: FTBFS in Fedora rawhide/f36

https://bugzilla.redhat.com/show_bug.cgi?id=2045404

[ 4 ] Bug #2056613 - gcc-12.0.1-0.8.fc36 gives wrong -Wdangling-pointer warnings related to `for(;;)`

https://bugzilla.redhat.com/show_bug.cgi?id=2056613

[ 5 ] Bug #2057193 - f36 composes still have firefox 96, f34 f35 have firefox 97

https://bugzilla.redhat.com/show_bug.cgi?id=2057193

[ 6 ] Bug #2057492 - internal compiler error by kstars build with gcc-12.0.1-0.8.fc37.ppc64le

https://bugzilla.redhat.com/show_bug.cgi?id=2057492

[ 7 ] Bug #2060755 - Firefox: GCC 12 linking error

https://bugzilla.redhat.com/show_bug.cgi?id=2060755

[ 8 ] Bug #2063961 - Fedora ARM - Firefox fails to open on aarch64 Workstation

https://bugzilla.redhat.com/show_bug.cgi?id=2063961

su -c 'dnf upgrade --advisory FEDORA-2022-42ea499a7d' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 36
Version: 91.7.0
Release: 1.rh1.fc36
URL:
Summary: GNU version of Firefox browser

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here