Skip to content

Debian Changelog iceape (1.0.13~pre080614i-0etch1)

2009

iceape (1.0.13~pre080614i-0etch1) stable-security; urgency=low

   * security/stability update for issues discussed in firefox/thunderbird
     2.0.0.15, 2.0.0.16, 2.0.0.17, 2.0.0.18, 2.0.0.19 (details below)
     - Closes: #505565 - Mozilla SeaMonkey Multiple Vulnerabilities
   * debian/calendar-1.0.9.tar.bz2.uue,control,rules: add uuencoded
     calendar/ directory; unpack before patch-stamp in rules; adjust
     build-deps
   * debian/patches/99_configure.dpatch: refresh - run autoconf2.13
   * debian/patches/{20_visibility,90_bz416282,90_bz419116,90_bz421622,
     90_bz425576}.dpatch: drop patches now shipped/superseeded by upstream
     tarball/patchset
   * debian/patches/00list: Updated accordingly.
 
   Advisory notes:
   2.0.0.15:
   * MFSA 2008-21 (layout) aka CVE-2008-2798 - Crashes with evidence of memory
     corruption (rv:1.8.1.15) in layout engine
   * MFSA 2008-21 (javascript) aka CVE-2008-2799 - Crashes with evidence of
     memory corruption (rv:1.8.1.15) in the javascript engine
   * MFSA 2008-22 aka CVE-2008-2800 - XSS through JavaScript same-origin
     violation
   * MFSA 2008-23 aka CVE-2008-2801 - Signed JAR tampering
   * MFSA 2008-24 aka CVE-2008-2802 - Chrome script loading from fastload file
   * MFSA 2008-25 aka CVE-2008-2803 - Arbitrary code execution in
     mozIJSSubScriptLoader.loadSubScript()
   * MFSA 2008-26 aka CVE-2008-0304-followup - Buffer length checks in MIME
     processing
   * MFSA 2008-27 aka CVE-2008-2805 - Arbitrary file upload via originalTarget
     and DOM Range
   * MFSA 2008-29 aka CVE-2008-2807 - Faulty .properties file results in
     uninitialized memory being used
   * MFSA 2008-30 aka CVE-2008-2808 - File location URL in directory listings
     not escaped properly
   * MFSA 2008-31 aka CVE-2008-2809 - Peer-trusted certs can use alt names to
     spoof
   * MFSA 2008-32 aka CVE-2008-2810 - Remote site run as local file via Windows
     URL shortcut
   * MFSA 2008-33 aka CVE-2008-2811 - Crash and remote code execution in block
     reflow
   2.0.0.16:
   * MFSA 2008-34 aka CVE-2008-2785 - Remote code execution by overflowing CSS
     reference counter
   * MFSA 2008-35 aka CVE-2008-2933 - Command-line URLs launch multiple tabs
     when Firefox not running
   2.0.0.17:
   * MFSA 2008-37 aka CVE-2008-0016 - UTF-8 URL stack buffer overflow
   * MFSA 2008-38 aka CVE-2008-3835 - nsXMLDocument::OnChannelRedirect()
     same-origin violation
   * MFSA 2008-39 aka CVE-2008-3836 - Privilege escalation using feed preview
     page and XSS flaw
   * MFSA 2008-40 aka CVE-2008-3837 - Forced mouse drag
   * MFSA 2008-41 aka CVE-2008-4058 (XPCnativeWrapper pollution bugs),
     CVE-2008-4059 (XPCnativeWrapper pollution (Firefox 2)), CVE-2008-4060
     (Documents without script handling objects) - Privilege escalation via
     XPCnativeWrapper pollution
   * MFSA 2008-42 aka CVE-2008-4061 (1.8 layout), CVE-2008-4062 (1.8
     javascript) -  Crashes with evidence of memory corruption
     (rv:1.9.0.2/1.8.1.17)
   * MFSA 2008-43 aka CVE-2008-4065 (Stripped BOM characters) - BOM
     characters, low surrogates stripped from JavaScript before execution
   * MFSA 2008-44 aka CVE-2008-4067, CVE-2008-4068 - resource: traversal
     vulnerabilities
   * MFSA 2008-45 aka CVE-2008-4069 - [1.8 branch] XBM appears to draw
     uninitialized memory
   * MFSA 2008-46 aka CVE-2008-4070 - Heap overflow when canceling newsgroup
     message
   2.0.0.18:
   * MFSA 2008-48 aka CVE-2008-5012 - Image stealing via canvas and HTTP
     redirect
   * MFSA 2008-49 aka CVE-2008-5013 - Arbitrary code execution via Flash
     Player dynamic module unloading
   * MFSA 2008-50 aka CVE-2008-5014 - Crash and remote code execution via
     __proto__ tampering
   * MFSA 2008-52 aka CVE-2008-5017(1.8 layout), CVE-2008-5018(1.8 javascript)
     - Crashes with evidence of memory corruption (rv:1.9.0.4/1.8.1.18)
   * MFSA 2008-54 aka CVE-2008-0017 - Buffer overflow in http-index-format
     parser
   * MFSA 2008-55 aka CVE-2008-5021 - Crash and remote code execution in
     nsFrameManager
   * MFSA 2008-56 aka CVE-2008-5022 - nsXMLHttpRequest::NotifyEventListeners()
     same-origin violation
   * MFSA 2008-58 aka CVE-2008-5024 - Parsing error in E4X default namespace
   * MFSA 2008-59 aka CVE-2008-4582 - Script access to .documentURI and
    .textContent in mail
   2.0.0.19:
   * MFSA 2008-60 aka CVE-2008-5500 (layout) - Crashes with evidence of memory
     corruption (rv:1.9.0.5/1.8.1.19)
   * MFSA 2008-61 aka CVE-2008-5503 - Information stealing via
     loadBindingDocument
   * MFSA 2008-64 aka CVE-2008-5506 - XMLHttpRequest 302 response disclosure
   * MFSA 2008-65 aka CVE-2008-5507 - Cross-domain data theft via script
     redirect error message
   * MFSA 2008-66 aka CVE-2008-5508 - Errors parsing URLs with leading
     whitespace and control characters (fixed by bz451613)
   * MFSA 2008-68 aka CVE-2008-5511(XSS via XBL bindings to unloaded document),
     CVE-2008-5512(JavaScript privilege escalation) - XSS and JavaScript
     privilege escalation

 -- Alexander Sack <asac@canonical.com>  Mon, 05 Jan 2009 23:18:37 +0100

2008

iceape (1.0.13~pre080323b-0etch3) stable-security; urgency=low

   * debian/patches/90_bz416282.dpatch: Fix for MFSA 2008-08 aka CVE-2008-0591,
     which was not actually in 1.0.12~pre080131b-0etch1.
   * debian/patches/90_bz421622.dpatch: Fix a regression introduced by fix for
     CVE-2008-1234.
   * debian/patches/90_bz425576.dpatch: Fix for MFSA 2008-20 aka CVE-2008-1380.
   * debian/patches/00list: Updated accordingly.

 -- Mike Hommey <glandium@debian.org>  Fri, 18 Apr 2008 18:49:04 +0200

iceape (1.0.13~pre080323b-0etch2) stable-security; urgency=low

   * debian/patches/90_bz419116.dpatch: Patch from bz#419116 to fix regression
     in mailnews where sending mail through SMTP server would fail when no user
     information is given by mailnews code. Closes: #473572, #474605.
   * debian/patches/00list: Updated accordingly.

 -- Mike Hommey <glandium@debian.org>  Wed, 16 Apr 2008 20:08:35 +0200

iceape (1.0.13~pre080323b-0etch1) stable-security; urgency=low

   * New security/stability upstream release (backports for v2.0.0.13)
   * Fixes mfsa-2007-07 and mfsa-2008-{12-19}, also known as CVE-2008-0420,
     CVE-2007-4879, CVE-2008-0304, CVE-2008-0416, CVE-2008-1195,
     CVE-2008-1233, CVE-2008-1234, CVE-2008-1235, CVE-2008-1236,
     CVE-2008-1237, CVE-2008-1238, CVE-2008-1240, CVE-2008-1241.
 
   * debian/patches/90_bz279505.dpatch: Removed, as applied upstream.
   * debian/patches/00list: Updated accordingly.

 -- Mike Hommey <glandium@debian.org>  Wed, 26 Mar 2008 20:46:42 +0100

iceape (1.0.12~pre080131b-0etch2) stable-security; urgency=low

   * debian/patches/90_bz279505.dpatch: Patch from bz#279505 to fix crash
     in pop-up window on parent.close() due to double free.
     [@nsCSSFrameConstructor::RestyleEvent::HandleEvent]. Closes: #467560.
   * debian/patches/00list: Updated accordingly.

 -- Mike Hommey <glandium@debian.org>  Mon, 03 Mar 2008 22:18:38 +0100

iceape (1.0.12~pre080131b-0etch1) stable-security; urgency=critical

   * New security/stability upstream release (backports for v2.0.0.12)
   * MFSA 2008-01 aka CVE-2008-0412: Crashes with evidence of memory corruption
     v1.8.1.12 (Browser crashes)
   * MFSA 2008-01 aka CVE-2008-0413: Crashes with evidence of memory corruption
     v1.8.1.12 (javascript crashes)
   * MFSA 2008-02 aka CVE-2008-0414: Multiple file input focus stealing
     vulnerabilities: 1. Focus shifting bugs and 2. Selective keystroke
     blocking bugs
   * MFSA 2008-03 aka CVE-2008-0415: Privilege escalation, XSS, Remote Code
     Execution (JavaScript privilege escalation bugs)
   * MFSA 2008-04 aka CVE-2008-0417: Stored password corruption
   * MFSA 2008-05 aka CVE-2008-0418: Directory traversal via chrome: URI
   * MFSA 2008-06 aka CVE-2008-0419: Web browsing history and forward
     navigation stealing
   * MFSA 2008-08 aka CVE-2008-0591: File action dialog tampering
   * MFSA 2008-09 aka CVE-2008-0592: Mishandling of locally-saved plain text
     files
   * MFSA 2008-10 aka CVE-2008-0593: URL token stealing via stylesheet redirect
   * MFSA 2008-11 aka CVE-2008-0594: Web forgery overwrite with div overlay

 -- Mike Hommey <mh@glandium.org>  Thu, 14 Feb 2008 19:43:38 +0100

2007

iceape (1.0.11~pre071022-0etch1) stable-security; urgency=critical

   * New security/stability distributor release (backports for v2.0.0.8)
   * MFSA 2007-29 aka CVE-2007-5339 (browser), CVE-2007-5340 (javascript)
   * MFSA 2007-30 aka CVE-2007-1095
   * MFSA 2007-31 aka CVE-2007-2292
   * MFSA 2007-32 aka CVE-2007-3511, CVE-2006-2894
   * MFSA 2007-33 aka CVE-2007-5334
   * MFSA 2007-34 aka CVE-2007-5337
   * MFSA 2007-35 aka CVE-2007-5338
   * MFSA 2007-36 aka CVE-2007-4841 (windows only)
 
   * debian/patches/90_MFSA_2007_26.dpatch,
     debian/patches/90_MFSA_2007_27.dpatch: applied upstream ... dropped.
   * debian/patches/00list: Updated accordingly.
   * debian/patches/99_configure.dpatch: rerun autoconf2.13

 -- Alexander Sack <asac@debian.org>  Mon, 22 Oct 2007 00:33:17 +0200

iceape (1.0.10~pre070720-0etch3) stable-security; urgency=critical

   * debian/patches/90_MFSA_2007_26.dpatch,
     debian/patches/90_MFSA_2007_27.dpatch: Patches, respectively, for
     mfsa-2007-26 (aka CVE-2007-3844) and mfsa-2007-27 (aka CVE-2007-3845).
   * debian/patches/00list: Updated accordingly.

 -- Mike Hommey <glandium@debian.org>  Wed, 01 Aug 2007 21:08:19 +0200

iceape (1.0.10~pre070720-0etch2) stable-security; urgency=critical

   * debian/patches/80_system_libs.dpatch: Make sure we won't be bitten by
     upstream changing libjpeg, libpng or zlib internal version, which
     makes system library not used even though --with-system-* argument
     is given to configure. This time, it happened with libpng.
   * debian/patches/99_configure.dpatch: Updated.
   * debian/patches/00list: Updated accordingly.

 -- Mike Hommey <glandium@debian.org>  Sat, 21 Jul 2007 22:40:07 +0200

iceape (1.0.10~pre070720-0etch1) stable-security; urgency=critical

   * New security/stability upstream prerelease (v1.0.10pre070720)
   * Fixes mfsa-2007-{18-22}, mfsa-2007-{24-25}, alsa known as
     CVE-2007-3089, CVE-2007-3285, CVE-2007-3656, CVE-2007-3734,
     CVE-2007-3735, CVE-2007-3736, CVE-2007-3737, CVE-2007-3738.

 -- Mike Hommey <glandium@debian.org>  Fri, 20 Jul 2007 23:20:01 +0200

iceape (1.0.9-0etch1) stable-security; urgency=low

   * New upstream release.
   * Fixes mfsa-2007-12, mfsa-2007-{14-17}, also known as
     CVE-2007-1362, CVE-2007-1558, CVE-2007-2867, CVE-2007-2868,
     CVE-2007-2870, CVE-2007-2871.
   * debian/patches/15_gecko_1.8.0.11.dpatch: Removed, as being applied
     upstream.
   * debian/patches/00list: Updated accordingly.
   * debian/control: Update dependencies for iceape-dev and iceape-chatzilla so
     that they don't depend on iceape-browser >= 1.0.9-1.

 -- Mike Hommey <glandium@debian.org>  Wed, 06 Jun 2007 19:20:51 +0200

iceape (1.0.8-4) unstable; urgency=low

   * debian/iceape-composer.png.uue, debian/iceape-news.png.uue: Removed,
     as they are not used.
   * debian/patches/15_gecko_1.8.0.11.dpatch: Update to 1.8.0.11 codebase.
     Fixes mfsa-2007-11.
   * debian/patches/00list: Updated accordingly.
   * debian/patches/25_gnome_helpers_with_params.dpatch: Make MIME registry
     use system mime.types when it doesn't get extensions from the Gnome
     registry. This will make the helper configuration dialogs work better.
   * debian/rules: Install several icons in the hicolor theme.
   * debian/iceape-browser.install:
     + Install /usr/lib/iceape/chrome/icons/default/default.xpm and
       /usr/lib/iceape/chrome/icons/default/default16.xpm files that were
       missing.
     + Install files from the hicolor theme.
   * debian/patches/10_icons.dpath: Install the icons into the correct place.

 -- Mike Hommey <glandium@debian.org>  Sat, 24 Mar 2007 00:54:51 +0100

iceape (1.0.8-3) unstable; urgency=low

   * debian/patches/15_passwdmgr.dpatch: Restore parts that were actually
     NOT applied upstream, and adapt them. Thanks Sam Hocevar for spotting
     this. Closes: #414010.

 -- Mike Hommey <glandium@debian.org>  Thu, 8 Mar 2007 18:50:21 +0100

iceape (1.0.8-2) unstable; urgency=low

   * debian/copyright: Added licensing terms for the content in the debian
     directory.
   * debian/patches/35_xembed_crash.dpatch: Removed. The problem lies in the
     totem plugin, actually. Closes: #413256.
   * debian/about_debian.js: Custom component to add support for
     about:README.Debian and about:bugs addresses.
   * debian/iceape-browser.install, debian/iceape-browser.links, debian/rules:
     Install the new about_debian.js component.
   * debian/patches/85_about.dpatch: Link to newly added about:bugs and
     about:README.Debian pages instead of direct links.
   * debian/patches/35_about_security.dpatch: Removed, since we don't directly
     link to file:/// and http:// urls anymore.
   * debian/patches/85_release_notes.dpatch: Remove "Release Notes" item from
     Help menu.
   * debian/patches/00list: Updated accordingly.

 -- Mike Hommey <glandium@debian.org>  Sun, 4 Mar 2007 20:58:30 +0100

iceape (1.0.8-1) unstable; urgency=low

   * New upstream release.
   * Fixes mfsa-2007-{01-07}, also known as
     CVE-2006-6077, CVE-2007-0008, CVE-2007-0009, CVE-2007-0045,
     CVE-2007-0775, CVE-2007-0776, CVE-2007-0777, CVE-2007-0778,
     CVE-2007-0779, CVE-2007-0780, CVE-2007-0800, CVE-2007-0981,
     CVE-2007-0995.
   * debian/iceape-browser.install: Install libfreebl.
   * debian/rules:
     + Invert /usr/share/pixmaps/iceape-mailnews.xpm and
       /usr/share/pixmaps/iceape-mail-compose.xpm. Closes: #409812.
     + Do shlibsign on libsoftokn and libfreebl.
   * debian/patches/25_passwdmgr_crash.dpatch,
     debian/patches/20_broken_perl.dpatch: Removed, as being applied upstream.
   * debian/patches/18_kbsd_nspr.dpatch, debian/patches/25_entropy.dpatch,
     debian/patches/35_system_myspell.dpatch, debian/patches/38_kbsd.dpatch,
     debian/patches/80_security_build.dpatch: Adapted to upstream changes.
   * debian/patches/60_distclean.dpatch: Removed parts that were applied
     upstream ; added another cleanup in nss directory.
   * debian/patches/15_passwdmgr.dpatch: Removed parts that were applied
     upstream.
   * debian/patches/99_configure.dpatch: Updated with autoconf.
   * debian/patches/35_theme_switch.dpatch: Fix for hang up when switching
     GTK theme. bz#352096.
   * debian/patches/35_xembed_crash.dpatch: Fix for crash on restyle after
     closing tab with xembed plugin. bz#359870. Thanks Alexander Sack.
   * debian/patches/00list: Updated accordingly.

 -- Mike Hommey <glandium@debian.org>  Fri, 2 Mar 2007 23:04:24 +0100

iceape (1.0.7-3) unstable; urgency=low

   * debian/mozilla-browser.postinst: Renamed to mozilla-browser.postrm, since
     it is about postrm rules for purge.
   * debian/control:
     + Make iceape conflict with mozilla (<< 2:1.8) instead of mozilla.
       Closes: #405911.
     + iceape is built without xprint support, drop outdated and useless
       Suggests to xprt. Thanks to Andreas Metzler. Closes: #301649.
   * debian/iceape-browser.prerm: Don't forget to remove the alternatives at
     removal time. Closes: #407411.
   * debian/iceape-runner:
     + Add missing quotes in a test. Thanks to Kevin Ryde. Closes: #408575.
     + Add check on ${HOME}. Closes: #361999, #294425.
   * debian/patches/65_composer_charset.dpatch: Align editor character set with
     meta tag character set at document creation. Closes: #408220.
   * debian/patches/15_atk_crash.dpatch: Fix random crashed in GetMaiAtkType.
     bz#302250. Closes: #406861.
   * debian/patches/18_m68k_xpcom.dpatch: Apply changes provided by Roman
     Zippel to fix FTBFS of third party software on m68k.  Renamed as
     68_m68k_xpcom.dpatch, since it needs to be sent upstream. (Stolen from
     xulrunner)
   * debian/patches/35_zip_cache.dpatch: Invalidate cache for a zip file that
     got modified. It will prevent corruption of the XUL FastLoad cache when
     upgrade is performed while an instance of the application is running.
     bz#368428. Closes: #406618.
   * debian/patches/80_calendar_locale.dpatch: Don't install calendar locales.
     Closes: #406748. Locale packagers: Please add the locales from the
     calendar but double check that they include all the strings.
   * debian/patches/82_prefs.dpatch: Workaround for freeze error with mail
     compose window after a couple of hours of use. bz#307672. Closes: #405662.
   * debian/extras/iceape_icon_plain.svg, debian/extras/iceape_logo_plain.svg,
     debian/extras/iceape_logo_splash.xpm: Changed colors and improved contrast
     on logo and icon. Closes: #408441.
   * debian/extras/calendar_orig_309293.svg: Removed, because it is non-free.
   * debian/iceape-calendar.install: Install calendar.jar instead of calendar*.
   * debian/patches/25_pango_null_char.dpatch: Avoid freeze/crash when null
     characters are present in justified text by discarding NULL characters
     before displaying. bz#366902. (Stolen from xulrunner svn)
     Closes: #406698.
   * debian/patches/38_sparc64_unichar_alignment.dpatch: Add ia64 to the
     list of arches that need strict alignment. (Stolen from iceweasel svn)
   * debian/patches/15_pango_textarea_position.dpatch: Fix for cursor position
     when moving in a textarea. bz#366796. Closes: #408913.
   * debian/patches/00list: Updated accordingly.

 -- Mike Hommey <glandium@debian.org>  Mon, 29 Jan 2007 08:12:13 +0100

iceape (1.0.7-2) unstable; urgency=high

   * The "OMFFSM" Release !
 
   * debian/iceape-browser.preinst: Move files from /usr/lib/iceape/chrome, not
     ., dammit ! Closes: #405586.

 -- Mike Hommey <glandium@debian.org>  Thu, 4 Jan 2007 20:24:44 +0100

iceape (1.0.7-1) unstable; urgency=low

   [ Mike Hommey ]
   * New upstream release. Fixes mfsa-2006-{68-74} also known as
     CVE-2006-6497, CVE-2006-6498, CVE-2006-6499, CVE-2006-6500,
     CVE-2006-6501, CVE-2006-6502, CVE-2006-6503, CVE-2006-6504.
     Closes: #404892.
 
   * This release is dedicated to Andreas Metzler, who is doing a great job at
     bug triaging the huge pile of bugs that has been accumulating for years
     on mozilla-* packages.
 
   [ Alexander Sack ]
   * debian/extras/iceape_icon_plain.svg,debian/extras/calendar_orig_309293.svg,
     debian/extras/iceape_logo_splash.xpm,debian/extras/iceape_logo.svg,
     debian/extras/calendar.svg,debian/extras/iceape_logo_plain.svg,
     debian/extras/iceape_icon.svg,debian/extras/license.txt,
     debian/extras/Throbber-small.png.uue,debian/extras/Throbber-small.gif.uue,
     debian/control,debian/rules, debian/patches/81_free_art_improvements.dpatch:
     Adding free artwork contributed by unicko2000 aka Ricardo Fernándezi
     <unicko2000@yahoo.es>; added build-depends on imagemagick and librsvg2-bin
     to convert svg artwork to various image formats; generate various image
     formats of free artwork and place them in build tree appropriately. Picking
     Throbber Icons from toolkit to replace trademarked seamonkey throbber.
     Closes: #401265.
   * debian/patches/81_free_art_improvements.dpatch: use .png for about:logo
     instead of .gif ... to improve about page appearence.
   * debian/rules,debian/remove.nonfree: Execute debian/remove.nonfree
     in source target; adding more trademarked logos/icons to remove list;
     for now sedding hardcoded sunbird trademarks in
     calendar/sunbird/app/brand.properties and
     calendar/sunbird/app/brand.dtd.  Closes: #400341,#401266.
   * debian/patches/80_free_art_fixes.dpatch: added patch to prevent build
     failure due to removed throbber icons that are not used
     by seamonkey
   * debian/patches/65_branding_bug_401824.dpatch: fix for profile branding bug
     Closes: #401824.
   * debian/patches/00list: added 81_free_art_improvements, 80_free_art_fixes,
     65_branding_bug_401824
 
   [ Mike Hommey ]
   * Removed non-free and sourceless binaries from source package
     with the script from the gnuzilla project, with 2 additional removals of
     IETF files. Closes: #401266.
     You can find this modified script for reference in debian/remove.nonfree.
     Note this script also removes useless CVS files.
   * debian/control: iceape-chatzilla conflicts with older versions of
     mozilla-browser. Closes: #401298.
   * debian/watch: Added a watch file to track seamonkey versions.
   * debian/patches/80_config.dpatch: Use config.guess and config.sub from
     autotools-dev.
   * debian/iceape-runner:
     + Removed -a option passed to iceape (but we keep the parsing, for when it
       will become useful). This option prevented iceape to start with the
       configured application. Closes: #401620.
     + Added a MOZ_PLUGIN_PATH to add support for plugins in
       /usr/lib/mozilla/plugins. Closes: #404258.
     + Removed some bashisms.
   * debian/watch: Added rule to mangle dfsg versions.
   * debian/patches/15_passwdmgr.dpatch: Adapted to changes in upstream. Thanks
     to Andreas Metzler.
   * debian/patches/35_crash_focus.dpatch: Removed: applied upstream.
   * debian/iceape-browser.preinst: Move files away from /usr/lib/iceape/chrome
     to /usr/share/iceape/chrome if there are. Thanks to Andreas Barth. Closes:
     #401372.
   * debian/patches/82_prefs.dpatch: Set filename for general config file for
     locks and set the obscure value to 0 so that the file needs not be
     "encrypted".
   * debian/iceape.cfg: Disable upgrade notification and lock the value of the
     property so that it is not possible to change it from the UI. Thanks to
     Thijs Kinkhorst for the hint on the preference.
   * debian/rules, debian/iceape-browser.install: Install iceape.cfg.
     Closes: #404699.
   * debian/README.Debian: Rewrote, stealing stuff we wrote for
     firefox^Wiceweasel, including a note about Emacs key bindings.
     Closes: #199090, #291418, #292435, #294542, #296347, #306213.
   * debian/control: Fix mozilla-js-debugger package description to refer to
     mozilla-venkman instead of iceape. Thanks to Andreas Metzler.
   * debian/README.build: Removed.
   * debian/README.chrome: Put reference on mozilla-venkman and mozilla-checky
     instead of non-existant iceape-locale-ja.
   * debian/README.source: Added instructions on how to get the patched sources
     and to build the package from SVN. Thanks to Andreas Metzler.
   * debian/copyright: Fixed typos. Thanks to Thijs Kinkhorst. Closes: #405225.
   * debian/homepagereset.js: Custom component to reset the browser homepage if
     it is set to the old localstart.html page from the mozilla-browser
     package, which doesn't exist any more.
   * debian/patches/85_about.dpatch: Beautifulize about: page (enhancements
     stolen from Firefox) and added some useful links for Debian.
   * debian/patches/82_homepage.dpatch: Set homepage and throbber url to
     about:.
   * debian/patches/35_about_security.dpatch: Relax security on what about:
     urls can load, to match that of chrome and resources urls. bz#365526.
   * debian/rules, debian/iceape-browser.install, debian/iceape-browser.links:
     Install this custom component. Closes: #401537, #402337.
   * debian/iceape-dom-inspector.install: Only install inspector.jar from
     chrome, manifest files are not useful for iceape (yet).
   * debian/menu_dir/iceape.desktop: Set this menu item to be used for the
     Iceape Suite. Which means that will open whatever is configured to be
     opened at Iceape Suite startup (see preferences).
   * debian/menu_dir/iceape-navigator.desktop: Add a new menu item for the
     Iceape Navigator, which will launch a browser window.
   * debian/iceape-browser.install: Install this new desktop file.
   * debian/patches/65_xremote.dpatch: Add commands to open calendar, chatzilla
     and address book via the XRemote interface.
   * debian/iceape-runner: Modify to make use of the new commands in the
     XRemote interface. This means iceape -chat and friends works whether an
     iceape window is already opened or not.
   * debian/patches/38_kbsd.dpatch, debian/patches/38_mips64_build.dpatch,
     debian/patches/80_uname.dpatch, debian/patches/18_kbsd_nspr.dpatch:
     Applied patch from Petr Salinger to build on GNU/kFreeBSD.
     Closes: #401401.
   * debian/patches/99_configure.dpatch: Updated.
   * debian/patches/35_mail_navigator_overlay.dpatch: Set the overlay for
     mailnews options in navigator in mailnews instead of navigator. bz#365701.
     Closes: #227705.
   * debian/patches/00list: Updated according to all modified and added patches.
   * debian/update-iceape-chrome: Redirect regchrome's stderr, too.
   * debian/patches/80_uname.dpatch: Fix OS_TARGET so that it is correctly set
     to Linux for things that expect this value instead of linux-gnu.
   * debian/control: Various changes in packages descriptions.
     Closes: #401431, #403047.
 
   [ Alexander Sack ]
   * debian/rules: update target 'source' to not include epoch in generated
     orig.tar.gz name. Patch by Andreas Metzler.

 -- Mike Hommey <glandium@debian.org>  Wed, 3 Jan 2007 19:37:41 +0100

2006

iceape (1.0.6-1) unstable; urgency=low

   * Initial Release. (Closes: #350740)
   * Thanks to Hendrik-Jan Heins for his help.

 -- Mike Hommey <glandium@debian.org>  Thu, 23 Nov 2006 00:05:52 +0100