From owner-freebsd-gecko@FreeBSD.ORG Wed Jul 23 04:53:39 2014 Return-Path: Delivered-To: gecko@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 026BEE38; Wed, 23 Jul 2014 04:53:39 +0000 (UTC) Received: from mout.gmx.net (mout.gmx.net [212.227.15.19]) (using TLSv1.2 with cipher DHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "mout.gmx.net", Issuer "TeleSec ServerPass DE-1" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 93DEB2DAB; Wed, 23 Jul 2014 04:53:38 +0000 (UTC) Received: from [192.168.0.100] ([87.139.233.65]) by mail.gmx.com (mrgmx003) with ESMTPSA (Nemesis) id 0MgtWa-1WwfOL2SGG-00M0aJ; Wed, 23 Jul 2014 06:53:29 +0200 Message-ID: <53CF3FCB.70908@gmx.de> Date: Wed, 23 Jul 2014 06:53:31 +0200 From: olli hauer User-Agent: Mozilla/5.0 (Windows NT 5.1; rv:31.0) Gecko/20100101 Thunderbird/31.0 MIME-Version: 1.0 To: gecko@FreeBSD.org, Olli Hauer Subject: security/nss several vulnerabilities X-Enigmail-Version: 1.6 Content-Type: text/plain; charset=iso-8859-15 Content-Transfer-Encoding: 7bit X-Provags-ID: V03:K0:nYi9Sb5ZFJFcrNlJv29MPHVotuSFcjfFNxjjsig9w5Dznq/aZlB AP2AtPFTLYMlmEokD9vJrPgpU8Jw7kRzeFBTsbxexWeaGAGl6cb9ucDUNCvyxTeWMNImVR5 gC7qY6mu0YpAkNVkxqYhEypPwD0EE1Y+xTMqO4H2rDppnftj2ndaap6zxI4A4iP1xFVOwfr KUC5wvsM6V9vyRS3kqJIA== Cc: FreeBSD Security Team Team X-BeenThere: freebsd-gecko@freebsd.org X-Mailman-Version: 2.1.18 Precedence: list List-Id: Gecko Rendering Engine issues List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 23 Jul 2014 04:53:39 -0000 Hi, checking my logs this morning I found the following security errata for my REL systems. I suspect the nss/nspr issue is also from interest for FreeBSD. Synopsis: Critical: nss and nspr security, bug fix, and enhancement update Issue Date: 2014-07-22 CVE Numbers: CVE-2013-1740 CVE-2014-1490 CVE-2014-1491 CVE-2014-1492 CVE-2014-1545 CVE-2014-1544 Synopsis: Critical: nss and nspr security update Issue Date: 2014-07-22 CVE Numbers: CVE-2014-1544 Synopsis: Important: thunderbird security update Issue Date: 2014-07-22 CVE Numbers: CVE-2014-1547 CVE-2014-1555 CVE-2014-1556 CVE-2014-1557 -- olli