Граф коммитов

498 Коммитов

Автор SHA1 Сообщение Дата
Steve Jalim 7cd8ef21dd Remove linebreak in URL to referenced Android commit
This URL was spotted as broken by a tool I'm creating for checking www.mozilla.org. I've removed the linebreak and confirmed via the Preview tab that it still works.
2022-02-16 11:41:04 -05:00
Frederik Braun 363aed139a Advisory for thunderbird 91.6.1 2022-02-15 14:49:42 -05:00
Tom Ritter 1055ddc687 Fix TB Date 2022-02-11 11:56:56 -05:00
Tom Ritter b033fbf729 Remove pending note 2022-02-11 11:55:47 -05:00
Tom Ritter deec46f078 Thunderbird 91.6 2022-02-11 11:54:26 -05:00
Daniel Veditz 137ac7a715 replacing "CVE-XXX" in description with real number 2022-02-11 08:51:09 -08:00
Tom Ritter f18e8bd953 Try to escape the asterix 2022-02-09 14:02:21 -05:00
Tom Ritter a15cb37b4d Advisories for Firefox 97 2022-02-07 10:24:19 -05:00
Frederik Braun 117f89292c
Draft advisories for Firefox 96, ESR 91.5 and TB 91.5 (#33)
* Draft advisories for Firefox 96, ESR 91.5 and TB 91.5

* Improve tenses and fix a few typos

* fixing a typo

Co-authored-by: Tom Ritter <tom@ritter.vg>
2022-01-11 08:46:05 -05:00
Frederik Braun ac6b05cffe
Merge pull request #86 from mozilla/tb-2020-12-20
Advisories for Thunderbird 91.4.1
2021-12-20 15:57:53 +01:00
Frederik Braun fa5c5e62f1 Advisories for Thunderbird 91.4.1 2021-12-20 15:56:24 +01:00
Tom Ritter cb3136fcc2 Assign pending CVEs 2021-12-16 12:09:14 -05:00
Frederik Braun c0b69e6f2f change name for reporterb 2021-12-06 07:16:59 +01:00
Frederik Braun 100320f37c adjust bug 1730120 description based on smaug's feedback 2021-12-03 20:52:46 +01:00
Frederik Braun 049997c2f5 Merge branch 'firefox-95-and-esr-and-thunderbird' of github.com:mozilla/foundation-security-advisories-private into firefox-95-and-esr-and-thunderbird 2021-12-03 20:39:07 +01:00
Frederik Braun 88e931ec85 Merge branch 'master' of github.com:mozilla/foundation-security-advisories-private into firefox-95-and-esr-and-thunderbird 2021-12-03 20:37:46 +01:00
Tom Ritter b9c487d5ea Unify the 95/ESR rollup so they can use the same CVE; break out the other bug; and improve the per-system note 2021-12-03 11:29:24 -05:00
Tom Ritter 078b4ecb4d Update the tenses used 2021-12-03 11:22:33 -05:00
Tom Ritter cbc72a7b13 Add links to the releases 2021-12-03 11:09:17 -05:00
Frederik Braun dd67e03b87 remove description template 2021-12-03 14:42:06 +01:00
Frederik Braun 2ce43dc38d Advisories for Firefox 95, ESR 91.4 and Thunderbird 91.4 2021-12-03 13:27:36 +01:00
Frederik Braun 61bbae82e2 backfill CVE ids for previously missing 2021-12-03 13:27:26 +01:00
Daniel Veditz 5b4401f1f9 Note missing patch in sourceball
Fixes bug 1446610
2021-12-02 07:46:45 -08:00
Daniel Veditz 3ded360a9d NSS advisory 2021-12-01 08:36:20 -08:00
Tom Ritter 08c3e58766 Update credit in advisories 2021-11-05 10:29:58 -04:00
Tom Ritter 2ae7eef9e8 Add Thunderbird 91.3 Advisories 2021-11-03 11:41:58 -04:00
Ryan VanderMeulen b84e204c3e Fix YAML parsing error. 2021-11-02 08:36:16 -04:00
Ryan VanderMeulen 790d7daa09 Merge remote-tracking branch 'private/adv-94' 2021-11-02 08:18:08 -04:00
Daniel Veditz 9e60570ea1 CVE-2021-32810 is not a Mozilla CVE
CVE-2021-32810 is not a Mozilla CVE. We need to keep it out of our cve-feed of CVEs issued by Mozilla even though it appears in our advisories.
2021-11-01 14:10:47 -07:00
Tom Ritter 791e64e448 Add Advisories for 94 2021-11-01 11:03:22 -04:00
Tom Ritter 15030f47a6 Thunderbird 78.15 was never releases 2021-10-19 09:59:04 -04:00
Tom Ritter ce555e57d1 Add Thunderbird advisories 2021-10-07 09:56:35 -04:00
Tom Ritter d1a085450c Advisories for 93 release 2021-09-30 14:06:12 -04:00
Frederik Braun ee27432ee6 Change incorrect fixed_in product for mfsa-2021-41 (Fixes #83) 2021-09-09 09:58:39 +02:00
Dianna Smith f280451418 Merge remote-tracking branch 'private/thunderbird-91.1' 2021-09-07 16:21:06 -04:00
Frederik Braun bbddabad4a Adding advisories for Thunderbird 78.14 2021-09-07 09:13:16 +02:00
Frederik Braun 7d5e82cf60 Advisories for Thunderbird 91.1 2021-09-06 10:03:36 +02:00
Frederik Braun 09c25547d4 Lump Android intent-bugs together and assign CVEs for all 2021-09-06 10:02:57 +02:00
Frederik Braun 8212ef9388 Bug missing from ESR 92.1 advisories. HT ryanvm 2021-09-02 17:05:14 +02:00
Frederik Braun 521d12bd26 Addressing review comments, Thanks Aryx 2021-09-02 15:20:41 +02:00
Frederik Braun 02d01c095a Adjusting incorrect names and numbers 2021-09-02 14:42:08 +02:00
Frederik Braun 6b483c655e Advisories for Firefox 92, Firefox ESR 78.14 and Firefox ESR 91.1 2021-09-02 14:38:20 +02:00
Julien Cristau e6fae793fb Update attribution for CVE-2021-29991 2021-08-19 09:58:54 +02:00
Tom Ritter dd667a874f Add Thunderbird to advisory 2021-08-17 11:55:22 -04:00
Tom Ritter 3d0385c1fe Add 91.0.1 dot release advisory 2021-08-13 23:01:25 -04:00
Paul McLanahan ee0dc876d4
Fix indentation for advisories in mfsa2021-36 2021-08-11 21:41:18 -04:00
Tom Ritter ce7f026bed Add Thunderbird 91 2021-08-11 21:03:58 -04:00
Tom Ritter 03ba3e370e Add Thunderbird Advisories 2021-08-10 10:59:22 -04:00
Tom Ritter cc2f703319 Fix up 91 advisories 2021-08-10 08:12:27 -04:00
Tom Ritter 8ac97fd8c4 Add advisories for 91 2021-08-06 16:05:08 -04:00
Daniel Veditz 1bfbdf2b4a Fix-ups for recent advisories
* The ANGLE bug fixed in the recent round of releases (CVE-2021-30547) was first fixed upstream and Google issued the CVE. Removing this from the feed.
* mfsa2021-32 had the wrong Hub bug's CVE
* mfsa2021-32 referenced a Thunderbird bug
2021-07-26 22:16:10 -07:00
Tom Ritter 6c5e7c32d5 Add Advisories for Hubs and Mozilla VPN 2021-07-15 14:07:24 -04:00
Tom Ritter 5ebb74dc30 Add Thunderbird 78.12 Advisories 2021-07-13 14:05:47 -04:00
Frederik Braun 3ffe8911e4
Advisories for Firefox 90 and Firefox ESR 78.12 (#27)
* Advisories for Firefox 90 and Firefox ESR 78.12
2021-07-13 14:04:15 +02:00
Tom Ritter 6deb9a2a0e Advisory for 89.0.1 2021-06-15 10:26:52 -04:00
Frederik Braun a9fb0002be Add FPVI&SCSB disclosure for Firefox ESR 78.9 and Firefox 87 2021-06-08 12:26:40 -04:00
Frederik Braun 69c7798b88 advisories for thunderbird 78.11 2021-06-03 15:11:27 +02:00
Julien Cristau 6521d43e8c Fix typo in mfsa2021-24
Reported-by: Emilio Pozuelo Monfort <pochu@debian.org>
2021-06-02 10:57:25 +02:00
Tom Ritter 43ec3c1337 Move iOS' -23 to -25 2021-06-01 13:10:18 -04:00
Pascal Chevrel 990ceb4e16 Merge remote-tracking branch 'foundation-private/fx-89-advisories' 2021-06-01 12:55:37 +02:00
Daniela Arcese c7d6ba6d5d
Fix date for iOS advisory 2021-05-28 16:57:52 -04:00
Daniela Arcese 66f5b1317d
Advisories for iOS Release 34.0 2021-05-28 14:34:57 -04:00
Frederik Braun 82fa486e49 Advisories for Firefox 89, Firefox ESR 78.11 2021-05-28 10:38:14 +02:00
Tom Ritter 5e308db5ef Add Thunderbird 78.10.2 2021-05-17 15:41:55 -04:00
Paul McLanahan 5de07c238d
Fix year for mfsa2021-21.yml 2021-05-06 17:01:46 -04:00
Paul McLanahan 1b09030036 Add mfsa2021-21 2021-05-06 16:53:55 -04:00
Tom Ritter 0f29a993b7 Fix a typo 2021-05-05 09:33:26 -04:00
Tom Ritter 101eac0f89 Add 88.0.1 Advisory 2021-05-04 13:50:00 -04:00
Tom Ritter f1d4f1e49a Add Thunderbird 78.10.1 advisory 2021-05-04 11:58:32 -04:00
Ryan VanderMeulen 655b0a7c2f fix announce date for mfsa2021-18 2021-05-04 09:50:14 -04:00
Tom Ritter a8e90cca9c add in the maintenance service advisory 2021-05-04 09:46:21 -04:00
Julien Cristau 1fc2336ea1 Fix version number in mfsa2021-17
Reported-by: Moritz Mühlenhoff <jmm@debian.org>
2021-04-21 16:10:38 +02:00
Tom Ritter 930cccadab Add an older advisory for 78.8.1 (and fix a typo in an earlier one) 2021-04-20 12:22:27 -04:00
Tom Ritter 06e18086f3 Add a low-severity fix in an older Thunderbird release 2021-04-20 12:17:07 -04:00
Pascal Chevrel 606b005bf4 Merge remote-tracking branch 'foundation-private/advisories-fx88-esr78.10' 2021-04-19 14:23:38 +02:00
Pascal Chevrel ee1222ce56 Merge remote-tracking branch 'foundation-private/advisories-thunderbird-78.10' 2021-04-19 14:23:27 +02:00
Frederik Braun 3ce936d945 Advisories for Firefox 88, Firefox ESR 78.10 2021-04-19 11:23:25 +02:00
Frederik Braun d6e7b8cb80
Turns out this repo isn't synced with the other. Next advisory is 14, not 13. 2021-04-19 10:54:46 +02:00
Frederik Braun 258afddef9
Update and rename mfsa2021-16.yml to mfsa2021-13.yml 2021-04-19 10:52:17 +02:00
Frederik Braun 3b1f57410c thunderbird 78.10 advisories 2021-04-16 17:23:50 +02:00
Julien Cristau 174c4b5424 Fix ID for bug 1666236
Reported-by: Salvatore Bonaccorso <carnil@debian.org>
2021-04-13 18:29:16 +00:00
Tom Ritter 21eb4fded2 Add Thunderbird 78.9.1 2021-04-08 15:40:17 -04:00
Tom Ritter bf9e061282 Add an advisory for the Angle update 2021-03-24 13:25:31 -04:00
Tom Ritter bb598df183 Correct the credit for Omair now and in the future 2021-03-24 11:44:06 -04:00
Tom Ritter ef53d0c532 Add Thunderbird Advisories 2021-03-22 10:16:23 -04:00
Tom Ritter fd0615197c Add advisories for 87; and update an earlier advisory 2021-03-19 13:24:26 -04:00
Tom Ritter 6db3b0401e Correct a few things I missed from the advisories and add Thunderbird's 2021-02-23 10:52:33 -05:00
Pascal Chevrel 1f3fc10aa5 fix double bug items 2021-02-23 14:24:30 +01:00
Pascal Chevrel d2d6a13fa5 Firefox 86.0 and ESR78.8.0 releases advisories 2021-02-23 14:04:51 +01:00
Tom Ritter 9e4889b7b6 Clarify that the sec fix is windows-only 2021-02-05 16:09:56 -05:00
Tom Ritter 557dd4085a Add 85.0.1 advisory 2021-02-04 13:18:04 -05:00
Tom Ritter 333af5a084 Add thunderbird 78.7 advisories 2021-01-26 14:12:25 -05:00
Frederik Braun 6f54e1c639 Add advisories for Firefox 85 and Firefox ESR 78.7 2021-01-26 14:28:02 +01:00
Tom Ritter ecf5cfaa03 Add Thunderbird 78.6.1 Release 2021-01-11 12:25:49 -05:00
Tom Ritter e6904e0aba Add 84.0.2 advisory 2021-01-05 15:19:52 -05:00
Tom Ritter fca2d63aff Add Advisories for Firefox 84, 78.6, Thunderbird 2020-12-14 13:47:59 -05:00
Tom Ritter d73b77c374 Add Thunderbird 78.5.1 advisories 2020-12-01 20:50:51 -05:00
Pascal Chevrel 1ba99805cb fix a comment 2020-11-17 13:04:28 +01:00
Tom Ritter c1fa39e9c2 Add advisories for 83 and 78.5 2020-11-16 12:17:08 -05:00
Tom Ritter 6ccf43605c Add Thunderbird to the list 2020-11-09 17:02:38 -05:00