Firefox 3.5.3 fixes the following issues:
Several security issues as follow:
MFSA 2009-51 Chrome privilege escalation with FeedWriter
MFSA 2009-50 Location bar spoofing via tall line-height Unicode characters
MFSA 2009-49 TreeColumns dangling pointer vulnerability
MFSA 2009-47 Crashes with evidence of memory corruption (rv:1.9.1.3/1.9.0.14)
43 bugs found.
| ID ▾ | Sev | Pri | OS | Assignee | Status | Resolution | Summary |
|---|---|---|---|---|---|---|---|
| 191046 | nor | P2 | Mac | am103824@gmail.com | VERI | FIXE | [OSX] Embedded plugins don't print - NPP_Print not called |
| 361189 | cri | -- | Mac | nobody@mozilla.org | RESO | FIXE | Firefox crashes whenever I try to open the Bookmarks Menu [@ nsObjCExceptionLogAbort | nsMenuItemIconX::OnStopFrame] |
| 389087 | maj | -- | Linu | MaierMan@web.de | RESO | FIXE | nsILocalFileUnix affected by 32bit stat/statvfs/truncate, therefore does not work with large files |
| 413529 | nor | -- | OS/2 | mozilla@Weilbacher.org | RESO | FIXE | Fix duplicate attachment icons and crashes with RWS |
| 427715 | cri | P2 | All | honzab.moz@firemni.cz | RESO | FIXE | nsCryptoHash apparently being called while NSS is in shutdown state [@ NSSRWLock_LockRead_Util] |
| 448918 | nor | -- | OS/2 | dragtext@e-vertise.com | VERI | FIXE | Make MOZ_MEDIA work on OS/2 |
| 461627 | nor | -- | All | ehsan.akhgari@gmail.com | VERI | FIXE | Hide the UI for saving certificate exceptions permanently in Private Browsing mode |
| 463075 | nor | -- | Linu | mozbugz@karlt.net | RESO | FIXE | building xul app --with-libxul-sdk fails lacking nspr-config |
| 463907 | nor | -- | All | bugmail@asutherland.org | RESO | FIXE | mozStorageConnection::ExecuteAsync does not check that provided statements have not been finalized |
| 468659 | cri | -- | All | surkov.alexander@gmail.com | RESO | FIXE | Crash [@ nsAccessNode::GetDocAccessibleFor(nsIDocShellTreeItem*, int) ] |
| 474081 | nor | -- | All | mak77@bonardo.net | VERI | FIXE | Sporadic failures in browser_bug321000.js |
| 477475 | cri | -- | Mac | smichaud@pobox.com | VERI | FIXE | Crash when KeyCue is running [@ nsMenuItemIconX::OnStopFrame] |
| 477564 | maj | -- | All | zeniko@gmail.com | RESO | FIXE | Session restore hangs/not responding with high CPU on large form with many checkboxes |
| 478086 | nor | P2 | Wind | asqueella@gmail.com | RESO | FIXE | enumerating drives/disks on Win32 using nsIFile.directoryEntries returns a single string with embedded NULLs in it |
| 483218 | nor | -- | All | Olli.Pettay@gmail.com | VERI | FIXE | mochitest-plain: test_bug450930.xhtml intermittently fails |
| 483980 | nor | -- | All | sdwilsh@forerunnerdesigns.com | RESO | FIXE | Allow history/bookmark observer components to register with a startup category |
| 487817 | maj | -- | Linu | Olli.Pettay@gmail.com | RESO | FIXE | [Linux] mochitest-plain: test_popup_attribute.xul intermittently times out |
| 493541 | cri | -- | Linu | mozbugz@karlt.net | RESO | FIXE | jemalloc integration cause crashes when libraries or plugins dlopen with RTLD_DEEPBIND |
| 493823 | nor | -- | All | paul@oshannessy.com | VERI | FIXE | One test from browser_394759 not being run |
| 494749 | nor | -- | All | paul@oshannessy.com | VERI | FIXE | mochitest-browser-chrome: browser_490040.js times out intermittently |
| 495441 | nor | -- | Linu | tomeu@sugarlabs.org | RESO | FIXE | pyxpcom chokes on NULL pointers as out params |
| 495680 | nor | -- | Wind | bugzilla@mcsmurf.de | RESO | FIXE | Problems with import of downloads.rdf after switch to toolkit download manager |
| 496058 | maj | -- | Linu | mak77@bonardo.net | VERI | FIXE | mochitest-browser-chrome: browser_bookmarksProperties.js times out intermittently |
| 497304 | cri | -- | Wind | marco.zehe@googlemail.com | VERI | FIXE | Crash [@ nsAccessibleWrap::get_accParent(IDispatch**) ] |
| 498433 | nor | -- | All | cbiesinger@gmail.com | RESO | FIXE | DOM can't parse IPv6 literal URLs |
| 499600 | cri | -- | Mac | smichaud@pobox.com | VERI | FIXE | Mac OS X's accessibility API causes Firefox to crash [@ objc_msgSend | nsMenuItemIconX::OnStopFrame][@ objc_msgSend | imgRequestProxy::OnStopFrame][@ imgRequestProxy::OnStopFrame] |
| 500654 | nor | -- | OS/2 | dragtext@e-vertise.com | VERI | FIXE | Fix OS/2 plugin code similar to bug 493601 |
| 501235 | nor | -- | Mac | jgriffin@mozilla.com | RESO | FIXE | add new mochitest sub-harness for docshell testing |
| 504520 | nor | -- | Mac | jorendorff@mozilla.com | RESO | FIXE | TM: a >= b misbehaves if a and b are both Infinity at record time |
| 505491 | nor | -- | All | l10n@mozilla.com | RESO | FIXE | Firefox 3.5.x language pack install.rdf needs to stabilize |
| 505678 | cri | -- | Open | ginn.chen@sun.com | RESO | FIXE | Downloadable font feature is broken with Sun Studio compiler on Solaris |
| 506379 | nor | -- | All | nobody@mozilla.org | RESO | FIXE | Bugs needed for post-BlackHat 2009 firedrill releases |
| 507046 | nor | -- | Linu | ehsan.akhgari@gmail.com | VERI | FIXE | browser_passwordmgrdlg.js test intermittent failure |
| 507251 | nor | -- | OS/2 | wuno@lsvw.de | VERI | FIXE | Fix build break of xulrunner, sunbird due to missing readme.(MOZ_APP_NAME) |
| 507386 | nor | -- | All | bwinton@latte.ca | VERI | FIXE | Unintended semicolons at the end of if-statements. |
| 507457 | cri | P3 | All | dbaron@dbaron.org | RESO | FIXE | Firefox crashes when opening certain e-mails in aol webmail. [@nsStyleSet::AddImportantRules(nsRuleNode*, nsRuleNode*)] |
| 507461 | nor | -- | OS/2 | wuno@lsvw.de | VERI | FIXE | OS/2 remove OS2embed from XULRunner tests |
| 507807 | nor | -- | OS/2 | wuno@lsvw.de | RESO | FIXE | Clean up linking on OS/2 |
| 508030 | nor | -- | All | paolo.02.prg@amadzone.org | RESO | FIXE | nsIMIMEService.getTypeFromExtension fails to find a match in the "ext-to-type-mapping" category if the provided extension is not lowercase |
| 508229 | enh | -- | All | timeless@bemail.org | VERI | FIXE | Clean up whitespace in nsBinHexDecoder |
| 508265 | nor | -- | All | mak77@bonardo.net | RESO | FIXE | Localized bookmarks backup are not replaced by new backups |
| 508879 | nor | -- | Linu | cls@seawood.org | RESO | FIXE | version_win.pl returns float in daysFromBuildID() which causes mingw windres to fail |
| 509594 | nor | -- | All | sgautherie.bz@free.fr | RESO | FIXE | [SeaMonkey] mochitest-plain: test_datepicker.xul fails now, conflicts with SeaMonkey (extension) 'QA' menu |