Michael Weiss
bf02beb099
chromium: 84.0.4147.89 -> 84.0.4147.105
...
https://chromereleases.googleblog.com/2020/07/stable-channel-update-for-desktop_27.html
This update includes 8 security fixes.
CVEs:
CVE-2020-6537 CVE-2020-6538 CVE-2020-6532 CVE-2020-6539 CVE-2020-6540
CVE-2020-6541
2020-07-28 12:18:09 +02:00
Michele Guerini Rocco
98ebda65a1
qutebrowser: fixup of 322d13e
( #94046 )
...
Webkit should never be the default backend.
2020-07-28 10:21:31 +02:00
Michele Guerini Rocco
7f9a64cfdf
Merge pull request #93336 from rnhmjoj/qute-backend
...
qutebrowser: re-add option to control the browser backend
2020-07-26 17:35:51 +02:00
Charlotte Van Petegem
49dba9c90b
firefox: support for PKCS#11 modules in wrapper
2020-07-25 16:57:46 +02:00
Vladimír Čunát
2b7c0dcdaa
Merge branch 'staging-next'
...
Rebuild on Hydra seems OK-ish.
mongodb.nix needed some conflict resolution (scons versions);
all four versions seem to build fine.
2020-07-25 16:18:40 +02:00
Lassulus
45e2ff349f
tor-browser: disable hardening by default ( #93154 )
...
* tor-browser: disable hardening by default
this seems to cause crashes with certain tabs.
relevant issue: https://github.com/NixOS/nixpkgs/issues/86356
* Update pkgs/applications/networking/browsers/tor-browser-bundle-bin/default.nix
Co-authored-by: Jörg Thalheim <Mic92@users.noreply.github.com>
2020-07-25 12:44:06 +02:00
Michael Weiss
11fbe97810
chromium{Beta,Dev}: M84 -> M85 -> M86 (broken)
...
Mark chromiumDev as broken since the build requires LLVM 11 which is not
yet in Nixpkgs (due to the lack of an RC, see #93324 ). Build error:
clang (LLVM option parsing): Unknown command line argument '-basic-aa-recphi=0'. Try: 'clang (LLVM option parsing) --help'
clang (LLVM option parsing): Did you mean '--basicaa-recphi=0'?
ninja: build stopped: subcommand failed.
2020-07-24 13:40:24 +02:00
michaelgrahamevans
253f73bd80
firefox: fix typo in comment in common.nix
2020-07-24 09:49:43 +02:00
Jörg Thalheim
96092dc936
stdenv: make -nostdinc work as intended
...
Right now we add glibc to search path also -nostdinc was provided,
which breaks projects providing their own gcc.
2020-07-23 08:39:46 +01:00
Jan Tojnar
2988feba8c
Merge branch 'master' into staging-next
2020-07-23 08:19:14 +02:00
squalus
ad5c5a67cc
ungoogled-chromium: 81.0.4044.138-1 -> 84.0.4147.89-1
...
based on chromium master@cd03bf0c
2020-07-22 12:15:53 -07:00
Edmund Wu
75ef7218e9
vivaldi: remove gstreamer
2020-07-19 22:15:23 -04:00
Jan Tojnar
83442a3533
Merge branch 'master' into staging-next
2020-07-20 02:16:21 +02:00
Nikolay Korotkiy
b581a31145
asuka: 0.8.0 -> 0.8.1
2020-07-20 00:19:32 +03:00
Mario Rodas
c09af4ea38
Merge pull request #93222 from taku0/flashplayer-32.0.0.403
...
flashplayer: 32.0.0.387 -> 32.0.0.403
2020-07-19 10:56:10 -05:00
ajs124
d4e479aae7
firefox: 77.0.1 -> 78.0.1 (security)
...
Close #92043 (original PR).
2020-07-19 13:01:58 +02:00
Vladimír Čunát
0513a9128f
nss_3_44: bring back this older branch for firefox-esr
...
/cc nss PR #91746
2020-07-19 12:30:25 +02:00
Felix Tenley
0dd4c644af
brave: 1.10.97 -> 1.11.97
2020-07-18 00:43:40 +02:00
Griffin Smith
d433839007
chromium: Add missing dependency on gnugrep
...
The bin script that runs chromium calls out to gnugrep - but gnugrep is
missing as a runtime dependency of the chromium package. I found this
out when I was trying to put it in a docker image.
2020-07-17 18:33:43 +02:00
rnhmjoj
322d13eb67
qutebrowser: re-add option to control the browser backend
2020-07-17 10:50:59 +02:00
Michele Guerini Rocco
e7c437975c
Merge pull request #93284 from rnhmjoj/qute-fix
...
qutebrowser: fix restart patching
2020-07-16 20:43:58 +02:00
rnhmjoj
6d2be2a2ce
qutebrowser: fix restart patching
2020-07-16 18:49:57 +02:00
Ash
e818368be6
amfora: init at 1.3.0
2020-07-16 17:03:08 +05:30
Michael Weiss
f05b67ec83
google-chrome: Fix the EGL backend
2020-07-15 15:31:02 +02:00
Michael Weiss
8427eb7044
chromium: 83.0.4103.116 -> 84.0.4147.89
...
https://chromereleases.googleblog.com/2020/07/stable-channel-update-for-desktop.html
This update includes 38 security fixes.
CVEs:
CVE-2020-6510 CVE-2020-6511 CVE-2020-6512 CVE-2020-6513 CVE-2020-6514
CVE-2020-6515 CVE-2020-6516 CVE-2020-6517 CVE-2020-6518 CVE-2020-6519
CVE-2020-6520 CVE-2020-6521 CVE-2020-6522 CVE-2020-6523 CVE-2020-6524
CVE-2020-6525 CVE-2020-6526 CVE-2020-6527 CVE-2020-6528 CVE-2020-6529
CVE-2020-6530 CVE-2020-6531 CVE-2020-6533 CVE-2020-6534 CVE-2020-6535
CVE-2020-6536
2020-07-14 23:10:31 +02:00
adisbladis
29c38efa84
firefox-bin: 78.0.1 -> 78.0.2
2020-07-14 22:03:14 +02:00
adisbladis
8b893ecde1
firefox-devedition-bin: 78.0b9 -> 79.0b7
2020-07-14 22:03:14 +02:00
adisbladis
e97bd70624
firefox-beta-bin: 79.0b2 -> 79.0b7
2020-07-14 22:03:14 +02:00
adisbladis
11acd8b30e
firefox-bin: Work around bug in upstream SHA sums files
2020-07-14 22:03:13 +02:00
adisbladis
f84cd5f8aa
firefox-bin: Switch to sha256 sums in update scripts
...
There is no extra security properties provided by sha512, they are
just bigger.
2020-07-14 22:03:01 +02:00
taku0
65579d4bf8
flashplayer: 32.0.0.387 -> 32.0.0.403
2020-07-14 21:12:28 +09:00
Maximilian Bosch
bfb7ac3d83
Merge pull request #93004 from helsinki-systems/drop/firefox/old-aliases
...
firefox/packages: drop old aliases
2020-07-13 23:02:24 +02:00
ajs124
93a49b2368
firefox/packages: drop old aliases
...
the 20.03 branchoff happened months ago
2020-07-12 16:30:02 +02:00
Vladimír Čunát
ec74a02bde
Merge branch 'master' into staging-next
...
Thousands of rebuilds from master (not sure why).
2020-07-11 16:45:47 +02:00
Florian Klink
1b78e0eeec
Merge pull request #73365 from colemickens/nixpkgs-firefox-libglvnd
...
firefox-wrapper: rename gdkWayland->forceWayland; always use libglvnd
2020-07-11 13:49:39 +02:00
Florian Klink
2bb6bc6648
Merge pull request #92823 from colemickens/firefox-drm
...
firefox{,-bin}: add 'mesa', for wayland/drm
2020-07-11 13:48:22 +02:00
Frederik Rietdijk
ae8eee9c3f
Merge master into staging-next
2020-07-11 08:59:54 +02:00
Francesco Gazzetta
77d5b41b05
castor: 0.8.15 -> 0.8.16
2020-07-10 16:10:35 +05:30
Cole Mickens
8437596beb
firefox{,-bin}: add 'mesa', for wayland/drm
2020-07-09 19:56:36 -07:00
Domen Kožar
347ab190c7
remove usage of patchelfUnstable now that it's released
2020-07-08 21:55:09 +02:00
Cole Mickens
68c68ff3c3
firefox: wrapper: include libglvnd by default (WR)
2020-07-07 03:33:49 -07:00
Cole Mickens
8734a5e362
firefox: wrapper: gdkWayland->forceWayland
2020-07-07 03:33:44 -07:00
ajs124
1f02e09a2c
firefox-esr-68: 68.9.0esr -> 68.10.0esr (PR #92043 )
2020-07-05 17:06:04 +02:00
ajs124
84cb46a37b
firefox-beta-bin: 78.0b9 -> 79.0b2 (PR #92043 )
2020-07-05 16:31:49 +02:00
ajs124
48a2ea4d39
firefox-bin: 77.0.1 -> 78.0.1 (PR #92043 )
2020-07-05 16:25:58 +02:00
Vladimír Čunát
e1206a2129
Merge master into staging-next
...
This brings thousands of rebuilds.
Hydra nixpkgs: ?compare=1597944
2020-07-04 09:15:27 +02:00
R. RyanTM
9e67ac4a51
castor: 0.8.14 -> 0.8.15
2020-07-03 02:13:48 +00:00
Frederik Rietdijk
c33ca7c5ce
Merge staging-next into staging
2020-07-02 17:14:53 +02:00
Ingo Blechschmidt
71cfbba072
elinks: 0.12pre6 -> 0.13.2 (felinks fork)
2020-06-29 00:35:29 +02:00
Maximilian Bosch
052c130cf8
Merge pull request #91637 from sikmir/neomutt
...
neomutt: enable on darwin
2020-06-27 20:54:21 +02:00
Nikolay Korotkiy
0467e621a5
elinks: enable on darwin
2020-06-27 02:18:19 +03:00
Markus Kowalewski
a65df7777a
links2: add license
2020-06-27 00:14:33 +02:00
Markus Kowalewski
7c883bce76
kristall: add license
2020-06-27 00:11:06 +02:00
Michele Guerini Rocco
8068812b49
Merge pull request #91582 from dotlambda/qutebrowser-1.13.0
...
qutebrowser: 1.12.0 -> 1.13.0
2020-06-26 18:01:04 +02:00
R. RyanTM
c2327fe409
kristall: 0.2 -> 0.3
2020-06-26 20:44:39 +05:30
Robert Schütz
8dd2ae63bb
qutebrowser: 1.12.0 -> 1.13.0
2020-06-26 11:48:14 +02:00
Mario Rodas
3f338bb94c
Merge pull request #88012 from TheBrainScrambler/master
...
webbrowser: init at 29.0.0rc1
2020-06-25 22:16:29 -05:00
Mario Rodas
c74657f91c
Merge pull request #91467 from danieldk/castor-verifyCargoDeps
...
castor: remove verifyCargoDeps
2020-06-25 21:50:27 -05:00
Frederik Rietdijk
fe9a096f46
Merge staging-next into staging
2020-06-25 20:36:08 +02:00
adisbladis
37aab787f5
firefox-devedition-bin: 77.0b7 -> 78.0b9
2020-06-25 14:47:10 +02:00
adisbladis
5f057dd755
firefox-beta-bin: 78.0b2 -> 78.0b9
2020-06-25 14:47:09 +02:00
worldofpeace
bdb59380a3
Merge pull request #91459 from zowoq/desktop-validation
...
treewide: remove deprecated value `Application` from makeDesktopItem
2020-06-25 07:09:24 -04:00
Nikolay Korotkiy
93574e5161
asuka: init at 0.8.0
2020-06-25 11:36:30 +03:00
Daniël de Kok
49c99ca796
castor: remove verifyCargoDeps
...
This attribute is not used anymore by buildRustPackage.
2020-06-25 08:35:05 +02:00
zowoq
c7e61112df
treewide: remove deprecated value Application
from makeDesktopItem
2020-06-25 12:18:37 +10:00
Felix Tenley
e09a882e21
brave: 1.8.95 -> 1.10.97
2020-06-24 15:03:46 -07:00
Michael Weiss
a7fa6f60c4
Merge pull request #91392 from thefloweringash/chromium
...
chromium: 83.0.4103.106 -> 83.0.4103.116
2020-06-24 19:48:02 +02:00
Frederik Rietdijk
6f72f0b0df
Merge staging-next into staging
2020-06-24 19:04:26 +02:00
Tim Steinbach
f3241e1b43
vivaldi: 3.0.1874.38-1 -> 3.1.1929.45-1
2020-06-24 08:25:26 -04:00
Andrew Childs
46f11f53c9
chromium: 83.0.4103.106 -> 83.0.4103.116
...
https://chromereleases.googleblog.com/2020/06/stable-channel-update-for-desktop_22.html
This update includes 2 security fixes.
CVEs: CVE-2020-6509
2020-06-24 13:53:28 +09:00
John Ericson
fa54dd346f
Merge pull request #85189 from Ericson2314/cxx-wrapper-debt
...
C++ compilers: Be sane with standard libraries
2020-06-22 10:38:34 -04:00
Emery Hemingway
ad32426b47
av-98: init at 1.0.2dev
2020-06-22 19:52:13 +05:30
John Ericson
f3f7612a40
C++ Compilers: Systematize handling of standard libraries
2020-06-22 04:24:44 +00:00
Jan Tojnar
2b86087644
Merge pull request #91194 from jtojnar/thunderbird-cleanup
2020-06-21 12:25:23 +02:00
Jan Tojnar
eb700f7a93
firefox-bin: remove GConf dependency
...
It is only optionally dlopened by crash reporter to try to get system proxy settings
but no system stores proxy in GConf these days so it is completely useless.
97c590ed55/toolkit/crashreporter/client/crashreporter_gtk_common.cpp (L121-L122)
2020-06-20 23:38:08 +02:00
Jan Tojnar
a699dd2bee
firefox-bin: remove libgnome dependency
...
It is deprecated and has been removed ages ago:
https://bugzilla.mozilla.org/show_bug.cgi?id=694570
It persists in the crash reporter for some reason but it is optional there:
f66f5a235e/toolkit/crashreporter/client/crashreporter_linux.cpp (L366-L370)
2020-06-20 23:37:15 +02:00
Jan Tojnar
5384ace0c8
firefox-bin: do not depend on libcanberra-gtk
...
libxul only needs libcanberra.so.0
3dc26ddcf3/widget/gtk/nsSound.cpp (L158)
2020-06-20 23:34:54 +02:00
Jan Tojnar
987a5c1e14
firefox: remove libIDL dependency
...
It has not been used for ages:
https://bugzilla.mozilla.org/show_bug.cgi?id=687766
2020-06-20 23:33:39 +02:00
ehmry
07299ff81e
Merge pull request #85442 from fgaz/castor/init
...
castor: init at 0.8.14
2020-06-18 20:13:50 +05:30
Graham Christensen
e8ddc0cfa7
google-chrome: add coreutils to PATH
...
google-chrome-stable can't run without coreutils in PATH
2020-06-17 08:32:34 -04:00
zowoq
78e324d272
treewide: ffmpeg_4 -> ffmpeg
2020-06-16 18:23:14 -07:00
Michael Weiss
5e8b626898
Merge pull request #90538 from primeos/chromium
...
chromium: 83.0.4103.97 -> 83.0.4103.106
2020-06-16 13:59:12 +02:00
Emery Hemingway
f2592c0b94
kristall: init at 0.2
2020-06-16 13:46:45 +05:30
Michael Weiss
1a5df8f680
chromium: 83.0.4103.97 -> 83.0.4103.106
...
https://chromereleases.googleblog.com/2020/06/stable-channel-update-for-desktop_15.html
This update includes 4 security fixes.
CVEs: CVE-2020-6505 CVE-2020-6506 CVE-2020-6507
2020-06-16 00:01:51 +02:00
Frederik Rietdijk
59dda0a42a
Merge master into staging-next
2020-06-15 08:07:00 +02:00
Vladimír Čunát
6857bccf12
Merge #89438 : firefox updates (into staging-next)
...
Most of the changes are in already, but we referenced these commit
hashes from 20.03, so let's include them in the history.
2020-06-14 11:41:42 +02:00
taku0
0a146054bd
flashplayer: 32.0.0.371 -> 32.0.0.387
2020-06-14 08:44:44 +02:00
ajs124
5460d53af1
firefox-beta-bin: 77.0b7 -> 78.0b2 (security)
...
PR #89438 .
2020-06-12 21:10:12 +02:00
ajs124
51d0d03b8c
firefox-esr-68: 68.8.0esr -> 68.9.0esr (security)
...
PR #89438 .
2020-06-12 21:10:12 +02:00
ajs124
1bc740008b
firefox-bin: 76.0 -> 77.0.1 (security)
...
PR #89438 .
2020-06-12 21:10:11 +02:00
Doron Behar
01d4e2fe33
treewide: use ffmpeg_3 explicitly if not wanted otherwise
...
After making `ffmpeg` point to the latest `ffmpeg_4`, all packages that
used `ffmpeg` without requiring a specific version now use ffmpeg_3
explicitly so they shouldn't change.
2020-06-12 11:55:31 -07:00
Anderson Torres
184ecdbf0f
Merge pull request #89931 from OPNA2608/update-palemoon-28.10.0
...
palemoon: 28.9.3 -> 28.10.0
2020-06-12 11:40:01 -03:00
Michael Weiss
e466ea721c
chromium{Beta,Dev}: Fix the builds
...
Fix #89615 .
2020-06-10 11:23:14 +02:00
Francesco Gazzetta
5a211182fd
castor: init at 0.8.14
2020-06-09 14:54:05 +02:00
Michael Weiss
1d38f6bcb2
chromiumBeta: Fix the configuration phase
...
The changes from chromiumDev (see 029a5de083
) are required for
chromiumBeta as well.
2020-06-09 13:53:47 +02:00
Florian Klink
495cf5fd17
Merge pull request #89565 from jsravn/enable-chromium-rtc-use-pipewire
...
chromium: add rtc_use_pipewire
2020-06-07 21:13:28 +02:00
Christoph Neidahl
7c65275595
palemoon: 28.9.3 -> 28.10.0
2020-06-07 12:27:03 +02:00
Michael Weiss
029a5de083
chromiumDev: Fix the configuration phase
...
Relevant changes in M85:
- Upstream switched from YASM to NASM [0].
- third_party/binutils was removed [1].
Note: The gn and dev channel updates are optional.
cc #89615 .
[0]: https://bugs.chromium.org/p/chromium/issues/detail?id=766721
[1]: 9869e86fd9
2020-06-06 19:38:53 +02:00
James Ravn
1535270d91
Add pipewire to runtime path
2020-06-06 17:08:39 +01:00
Lassulus
f0bee9760f
Merge pull request #88050 from squalus/ungoogled-0518
...
ungoogled-chromium: 81.0.4044.122-2 -> 81.0.4044.138-1
2020-06-06 16:16:28 +02:00
Michael Weiss
19e939d98e
chromiumBeta: Fix the source hash
...
For some reason the hash from 9ec139b672
became invalid, see #89615 .
The update script does now produce the correct hash.
2020-06-06 13:36:09 +02:00
James Ravn
fae468b3ce
chromium: add rtc_use_pipewire
...
This provides the browser flag #enable-webrtc-pipewire-capturer, which
adds support for screensharing on Wayland via xdg-desktop-portal.
The browser flag is disabled by default until a user enables it. At
least one other major distribution (Arch) enables this compile time
option, and so I believe it should be safe to enable by default.
This is also needed to support xdg-desktop-portal-wlr which was added in
https://github.com/NixOS/nixpkgs/pull/83485 .
2020-06-05 21:05:43 +01:00
Michael Weiss
9ec139b672
chromium: 83.0.4103.61 -> 83.0.4103.97
...
https://chromereleases.googleblog.com/2020/06/stable-channel-update-for-desktop.html
This update includes 5 security fixes.
CVEs: CVE-2020-6493 CVE-2020-6494 CVE-2020-6495 CVE-2020-6496
2020-06-04 20:26:31 +02:00
Christoph Hrdinka
001cf3f926
Merge pull request #87868 from OPNA2608/update-palemoon
...
palemoon: 28.9.1 -> 28.9.3
2020-06-04 16:40:57 +02:00
ajs124
0e3b3bd5b0
firefox-beta-bin: 77.0b7 -> 78.0b2
2020-06-04 13:30:40 +02:00
ajs124
303f8d1da4
firefox-bin: 76.0 -> 77.0.1
2020-06-04 13:30:40 +02:00
ajs124
7fc793091b
firefox-esr-68: 68.8.0esr -> 68.9.0esr
2020-06-04 13:30:40 +02:00
ajs124
dd334ebabb
firefox: 76.0.1 -> 77.0.1
2020-06-04 13:30:40 +02:00
ajs124
785cdcddd7
nss: 3.52 -> 3.52.1
2020-06-04 13:30:40 +02:00
JosephTheEngineer
c976124d1d
falkon: use wrapQtAppsHook ( #89375 )
2020-06-03 09:12:46 +00:00
Emery Hemingway
468091a623
tor-browser-bundle-bin: 9.0.9 -> 9.5
2020-06-03 13:22:00 +05:30
TheBrainScrambler
aeaa93c7e7
webbrowser: init at 29.0.0rc1
2020-06-02 14:45:59 +02:00
josephtheengineer
5d9f617c10
qutebrowser: 1.11.1 -> 1.12.0
2020-06-02 16:51:09 +10:00
Anderson Torres
ca90190e2c
Merge pull request #87277 from CheariX/brave-1.8.95
...
brave: 1.7.92 -> 1.8.95
2020-05-21 00:23:05 -03:00
Michael Weiss
cdd95a9625
chromium: 81.0.4044.138 -> 83.0.4103.61
...
https://chromereleases.googleblog.com/2020/05/stable-channel-update-for-desktop_19.html
This update includes 38 security fixes.
CVEs:
CVE-2020-6465 CVE-2020-6466 CVE-2020-6467 CVE-2020-6468 CVE-2020-6469
CVE-2020-6470 CVE-2020-6471 CVE-2020-6472 CVE-2020-6473 CVE-2020-6474
CVE-2020-6475 CVE-2020-6476 CVE-2020-6477 CVE-2020-6478 CVE-2020-6479
CVE-2020-6480 CVE-2020-6481 CVE-2020-6482 CVE-2020-6483 CVE-2020-6484
CVE-2020-6485 CVE-2020-6486 CVE-2020-6487 CVE-2020-6488 CVE-2020-6489
CVE-2020-6490 CVE-2020-6491
2020-05-19 23:55:32 +02:00
DonHugo69
20b3ba16c4
vivaldi: 2.11 -> 3.0
2020-05-19 14:51:20 +02:00
adisbladis
b3f79e194a
firefox-devedition-bin: 77.0b6 -> 77.0b7
2020-05-19 02:07:38 +01:00
adisbladis
aac358315f
firefox-beta-bin: 77.0b6 -> 77.0b7
2020-05-19 02:07:38 +01:00
squalus
fda9c39559
ungoogled-chromium: 81.0.4044.122-2 -> 81.0.4044.138-1
2020-05-18 01:01:19 -07:00
adisbladis
80a4efc3bd
firefox-devedition-bin: 76.0b8 -> 77.0b6
2020-05-16 14:08:19 +01:00
adisbladis
198653e57e
firefox-beta-bin: 76.0b8 -> 77.0b6
2020-05-16 14:07:56 +01:00
Andreas Rammhold
b0774e2d0e
Merge pull request #87811 from andir/firefox
...
firefox: 76.0 -> 76.0.1
2020-05-15 20:21:24 +02:00
Christoph Neidahl
5262ada436
palemoon: 28.9.1 -> 28.9.3
2020-05-15 09:06:54 +02:00
Mario Rodas
b51a82932f
Merge pull request #87733 from taku0/flashplayer-32.0.0.371
...
flashplayer: 32.0.0.363 -> 32.0.0.371
2020-05-14 08:05:29 -05:00
Andreas Rammhold
b70435e43c
firefox: 76.0 -> 76.0.1
2020-05-14 12:50:34 +02:00
aszlig
8fb49973ce
firefox: Add patch to fix AES GCM IV bit size
...
Regression introduced by bce5268a21
.
The bit size of the initialisation vector for AES GCM has been
introduced in NSS version 3.52 in the CK_GCM_PARMS struct via the
ulIvBits field.
Unfortunately, Firefox 68.8.0 and 76.0 do not set this field and thus it
gets initialised to zero, which in turn causes IV generation to fail.
I found out about this because WebRTC stopped working after updating to
NSS 3.52 and so I started bisecting.
Since there wasn't an obvious error in Firefox hinting towards NSS but
instead just the video stream ended up as a "null" stream, I didn't
suspect the NSS update to be the culprit at first. So I verified a few
times and then also started bisecting the actual commit in NSS that
caused the issue.
This turned out to be the problematic change:
https://phabricator.services.mozilla.com/D63241
> One notable change was caused by an inconsistancy between the spec and
> the released headers in PKCS#11 v2.40. CK_GCM_PARAMS had an extra
> field in the header that was not in the spec. OASIS considers the
> header file to be normative, so PKCS#11 v3.0 resolved the issue in
> favor of the header file definition.
Since the test I've used[1] was a bit flaky, I still didn't believe the
result of the bisect to be accurate, but after running the test several
times leading same results I dug through the above change line by line
to get more clues.
It fortunately didn't take that long to stumble upon the ulIvBits change
(which is actually documented in the NSS 3.52 release notes[4], but I
managed to blatantly ignore it for some reason) and started checking the
Firefox source tree for changes regarding that field.
Initialisation of that new field has been introduced[2] in preparation
for the 76 release, but subsequently got reverted[3] prior to the
release, because Firefox 76 is expected to be shipped with NSS 3.51,
which didn't have the ulIvBits field.
The patch I'm adding here is just a reintroduction of that change,
because we're using NSS 3.52. Not initialising that field will break
WebRTC and WebCrypto, which I think the former seems to gain in
popularity these days ;-)
Tested the change against the mentioned VM test[1] and also by testing
manually using Jitsi Meet and Nextcloud Talk.
[1]: https://github.com/aszlig/avonc/tree/884315838b6f0ebb32b/tests/talk
[2]: https://hg.mozilla.org/mozilla-central/rev/3ed30e6b6de1
[3]: https://hg.mozilla.org/mozilla-central/rev/665137da70ee
[4]: https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.52_release_notes
Signed-off-by: aszlig <aszlig@nix.build>
2020-05-13 02:23:12 +02:00
Robert Schütz
52fcfd3876
qutebrowser: 1.11.0 -> 1.11.1
...
fixes CVE-2020-11054
2020-05-12 18:46:09 +02:00
taku0
d8fa222ca2
flashplayer: 32.0.0.363 -> 32.0.0.371
2020-05-12 18:31:02 +09:00
xiorcale
ccfe14cb3b
github username: kjuvi -> xiorcale
2020-05-09 09:08:18 +02:00
Christian Mainka
e659bf3ce4
brave: 1.7.92 -> 1.8.95
2020-05-08 18:16:17 +02:00
Pavol Rusnak
6abf4a43ad
treewide: per RFC45, remove more unquoted URLs
2020-05-08 15:20:47 +02:00
Vladimír Čunát
a2d5351b63
Merge #86788 : firefox 75.0 -> 76.0 (critical security)
...
https://www.mozilla.org/en-US/firefox/76.0/releasenotes/
Some of the changes were in master already, but whatever...
2020-05-07 19:57:16 +02:00
Tim Steinbach
795564a03d
Merge pull request #81997 from eadwu/vivaldi-snapshot/fix-rpath-libdrm_gbm
...
vivaldi: include libdrm and libgbm
2020-05-07 08:17:27 -04:00
Michael Weiss
f00f6a73df
Merge pull request #87021 from primeos/chromium
...
chromium: 81.0.4044.129 -> 81.0.4044.138
2020-05-06 13:01:58 +02:00
Andreas Rammhold
5040192913
firefox-bin: 75.0 -> 76.0
...
Discussion: https://github.com/NixOS/nixpkgs/pull/86788
2020-05-06 11:41:38 +02:00
Andreas Rammhold
5bac4f0213
firefox-esr-68: 68.7.0esr -> 68.8.0esr
...
Discussion: https://github.com/NixOS/nixpkgs/pull/86788
2020-05-06 11:40:28 +02:00
R. RyanTM
c6933b1d24
opera: 67.0.3575.31 -> 68.0.3618.63
2020-05-06 03:23:12 +00:00
Michael Weiss
dec3d5f39f
chromium: 81.0.4044.129 -> 81.0.4044.138
...
https://chromereleases.googleblog.com/2020/05/stable-channel-update-for-desktop.html
This update includes 3 security fixes.
CVEs: CVE-2020-6831 CVE-2020-6464
2020-05-06 01:11:53 +02:00
Andreas Rammhold
d9f4f0645c
Merge pull request #81917 from colemickens/nixpkgs-firefox-libva
...
firefox: wrapper: add libva to libs
2020-05-05 20:21:43 +02:00
Andreas Rammhold
8996273bee
firefox-devedition-bin: 76.0b4 -> 76.0b8
2020-05-04 17:46:12 +02:00
Andreas Rammhold
f3cc8dc6fa
firefox-esr-68: 68.7.0esr -> 68.8.0esr
2020-05-04 17:29:37 +02:00
Andreas Rammhold
c186bc893f
firefox-beta-bin: 76.0b4 -> 76.0b8
2020-05-04 17:29:14 +02:00
Andreas Rammhold
3911336cc6
firefox-bin: 75.0 -> 76.0
2020-05-04 17:22:59 +02:00
Andreas Rammhold
324e40f0f4
firefox: 75.0 -> 76.0
2020-05-04 16:31:27 +02:00
R. RyanTM
5be4c34185
ephemeral: 6.3.3 -> 6.4.1
2020-05-04 01:34:33 -07:00
paumr
4a5b85364e
qutebrowser: 1.10.1 -> 1.11.0
2020-05-01 16:44:31 +02:00
squalus
ae5c4ed886
ungoogled-chromium: 81.0.4044.92-2 -> 81.0.4044.122-2
2020-05-01 09:19:53 +02:00
Michael Weiss
bfa2452dc8
Merge pull request #86206 from primeos/chromium
...
chromium: 81.0.4044.122 -> 81.0.4044.129
2020-04-29 11:15:25 +02:00
Michael Weiss
db4aece884
chromium: 81.0.4044.122 -> 81.0.4044.129
...
https://chromereleases.googleblog.com/2020/04/stable-channel-update-for-desktop_27.html
This update includes 2 security fixes.
CVEs: CVE-2020-6462 CVE-2020-6461
2020-04-28 14:39:10 +02:00
Christoph Neidahl
1e814e356a
palemoon: 28.8.4 -> 28.9.1, add GTK3 option
2020-04-27 21:02:09 -07:00