axs         15/05/31 14:34:58

  Added:                all-gentoo-1-cve-2015-4000.js local-settings.js
  Log:
  ported all-gentoo prefs from firefox-bin to address Logjam attack vector, bug 
550288
  
  (Portage version: 2.2.18/cvs/Linux x86_64, signed Manifest commit with key 
2B6559ED)

Revision  Changes    Path
1.1                  
www-client/seamonkey-bin/files/all-gentoo-1-cve-2015-4000.js

file : 
http://sources.gentoo.org/viewvc.cgi/gentoo-x86/www-client/seamonkey-bin/files/all-gentoo-1-cve-2015-4000.js?rev=1.1&view=markup
plain: 
http://sources.gentoo.org/viewvc.cgi/gentoo-x86/www-client/seamonkey-bin/files/all-gentoo-1-cve-2015-4000.js?rev=1.1&content-type=text/plain

Index: all-gentoo-1-cve-2015-4000.js
===================================================================
// Ensure preference cann't be changed by users
lockPref("app.update.auto", false);
lockPref("app.update.enabled", false);
lockPref("intl.locale.matchOS",                true);
// Allow user to change based on needs
defaultPref("browser.display.use_system_colors",  true);
defaultPref("spellchecker.dictionary_path", "/usr/share/myspell");
defaultPref("browser.shell.checkDefaultBrowser",  false); 
// Preferences that should be reset every session
pref("browser.EULA.override",              true); 
// CVE-2015-4000 - prevent Logjam attack vector
lockPref("security.ssl3.dhe_rsa_aes_128_sha", false);
lockPref("security.ssl3.dhe_rsa_aes_256_sha", false);



1.1                  www-client/seamonkey-bin/files/local-settings.js

file : 
http://sources.gentoo.org/viewvc.cgi/gentoo-x86/www-client/seamonkey-bin/files/local-settings.js?rev=1.1&view=markup
plain: 
http://sources.gentoo.org/viewvc.cgi/gentoo-x86/www-client/seamonkey-bin/files/local-settings.js?rev=1.1&content-type=text/plain

Index: local-settings.js
===================================================================
pref("general.config.filename", "all-gentoo.js");
pref("general.config.obscure_value", 0); // use this to disable the byte-shift




Reply via email to