icecat: add release icecat-140.7.0-1gnu1 for aramo

This commit is contained in:
Ark74 2026-01-18 00:16:18 -06:00
parent 17ba0259bf
commit 86c0c0ca33
156 changed files with 9131 additions and 4525 deletions

View file

@ -14,7 +14,7 @@
#include <stddef.h>
static const PRTime kCTExpirationTime = INT64_C(1770634470000000);
static const PRTime kCTExpirationTime = INT64_C(1773669190000000);
namespace mozilla::ct {
@ -208,7 +208,7 @@ const CTLogInfo kCTLogList[] = {
"\x99",
91},
{"DigiCert 'Wyvern2027h1'", CTLogState::Admissible, CTLogFormat::RFC6962,
1760119200000, // 2025-10-10T18:00:00Z
1766253600000, // 2025-12-20T18:00:00Z
2, // operated by DigiCert
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\x6a\xcb\x71\x62\x3d\x66\x9e\xd1\xae"
@ -218,7 +218,7 @@ const CTLogInfo kCTLogList[] = {
"\xee",
91},
{"DigiCert 'Wyvern2027h2'", CTLogState::Admissible, CTLogFormat::RFC6962,
1760119200000, // 2025-10-10T18:00:00Z
1766253600000, // 2025-12-20T18:00:00Z
2, // operated by DigiCert
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\xb8\xe8\x3c\x85\xc8\x1a\x61\x3f\xcc"
@ -258,7 +258,7 @@ const CTLogInfo kCTLogList[] = {
"\xcd",
91},
{"DigiCert 'sphinx2027h1'", CTLogState::Admissible, CTLogFormat::RFC6962,
1760119200000, // 2025-10-10T18:00:00Z
1766253600000, // 2025-12-20T18:00:00Z
2, // operated by DigiCert
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\xbe\x2a\xc8\xab\x55\xcf\xc2\x0c\x06"
@ -268,7 +268,7 @@ const CTLogInfo kCTLogList[] = {
"\x21",
91},
{"DigiCert 'sphinx2027h2'", CTLogState::Admissible, CTLogFormat::RFC6962,
1760119200000, // 2025-10-10T18:00:00Z
1766253600000, // 2025-12-20T18:00:00Z
2, // operated by DigiCert
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\x50\x27\xb6\xdc\xcf\x3c\xf6\x60\x2c"
@ -438,7 +438,7 @@ const CTLogInfo kCTLogList[] = {
"\xc9",
91},
{"Let's Encrypt 'Oak2025h2'", CTLogState::Admissible, CTLogFormat::RFC6962,
1701000000000, // 2023-11-26T12:00:00Z
1765578600000, // 2025-12-12T22:30:00Z
4, // operated by Let's Encrypt
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\xb5\x76\x30\x07\xad\xc6\xc8\xd2\xe4"
@ -448,7 +448,7 @@ const CTLogInfo kCTLogList[] = {
"\xa9",
91},
{"Let's Encrypt 'Oak2026h1'", CTLogState::Admissible, CTLogFormat::RFC6962,
1730678400000, // 2024-11-04T00:00:00Z
1765578600000, // 2025-12-12T22:30:00Z
4, // operated by Let's Encrypt
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\x99\xd4\x61\x70\x22\xfa\x77\x93\x0d"
@ -458,7 +458,7 @@ const CTLogInfo kCTLogList[] = {
"\x49",
91},
{"Let's Encrypt 'Oak2026h2'", CTLogState::Admissible, CTLogFormat::RFC6962,
1730678400000, // 2024-11-04T00:00:00Z
1765578600000, // 2025-12-12T22:30:00Z
4, // operated by Let's Encrypt
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\x6a\x70\x9d\xb3\x96\xe3\xec\x85\x36"
@ -617,6 +617,16 @@ const CTLogInfo kCTLogList[] = {
"\x01\xbb\x4f\xd8\xd3\x8f\xe3\x08\xc8\xb9\xf0\x24\xe9\xfe\xb8\xb1\x8e\x03"
"\x5a",
91},
{"TrustAsia Luoshu2027", CTLogState::Admissible, CTLogFormat::Tiled,
1764700200000, // 2025-12-02T18:30:00Z
5, // operated by TrustAsia
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\xba\x64\x98\xcf\x2e\x9d\x51\x09\x70"
"\x4d\xc9\x0f\xcc\xa3\x0a\x02\x93\x11\x8a\x7a\xb1\x1c\x80\x65\x2d\xf9\xab"
"\xbf\x1d\x52\x74\xc1\xf5\x45\x30\x02\x8b\x5c\x1b\xd5\x5d\x7c\xb2\xcf\x18"
"\x8e\x56\x82\xec\xf7\x21\xd8\xe4\x1a\xf0\xe7\xd1\x7a\xfb\x9b\xe1\x8f\x41"
"\x0d",
91},
{"Bogus placeholder log to unbreak misbehaving CT libraries", CTLogState::Retired, CTLogFormat::RFC6962,
1750489200000, // 2025-06-21T07:00:00Z
6, // operated by Geomys
@ -688,7 +698,7 @@ const CTLogInfo kCTLogList[] = {
"\xaa",
91},
{"IPng Networks 'Halloumi2025h2'", CTLogState::Admissible, CTLogFormat::Tiled,
1759861800000, // 2025-10-07T18:30:00Z
1765996200000, // 2025-12-17T18:30:00Z
7, // operated by IPng Networks
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\xa8\x9c\x52\x9c\x27\x0c\x85\x68\xa4"
@ -698,7 +708,7 @@ const CTLogInfo kCTLogList[] = {
"\x01",
91},
{"IPng Networks 'Halloumi2026h1'", CTLogState::Admissible, CTLogFormat::Tiled,
1759861800000, // 2025-10-07T18:30:00Z
1765996200000, // 2025-12-17T18:30:00Z
7, // operated by IPng Networks
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\xcd\xd7\x27\x1b\x04\x63\x9b\x66\x68"
@ -718,7 +728,7 @@ const CTLogInfo kCTLogList[] = {
"\xad",
91},
{"IPng Networks 'Halloumi2027h1'", CTLogState::Admissible, CTLogFormat::Tiled,
1759861800000, // 2025-10-07T18:30:00Z
1765996200000, // 2025-12-17T18:30:00Z
7, // operated by IPng Networks
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\xc3\x94\x94\x97\x6c\x9f\x77\x94\xc5"
@ -728,7 +738,7 @@ const CTLogInfo kCTLogList[] = {
"\x67",
91},
{"IPng Networks 'Halloumi2027h2'", CTLogState::Admissible, CTLogFormat::Tiled,
1759861800000, // 2025-10-07T18:30:00Z
1765996200000, // 2025-12-17T18:30:00Z
7, // operated by IPng Networks
"\x30\x59\x30\x13\x06\x07\x2a\x86\x48\xce\x3d\x02\x01\x06\x08\x2a\x86\x48"
"\xce\x3d\x03\x01\x07\x03\x42\x00\x04\xae\x62\x9b\x16\x43\xc6\xed\x07\xd0"

View file

@ -726,4 +726,4 @@ static const TransportSecurityPreload kPublicKeyPinningPreloadList[] = {
static const int32_t kUnknownId = -1;
static const PRTime kPreloadPKPinsExpirationTime = INT64_C(1773053640200000);
static const PRTime kPreloadPKPinsExpirationTime = INT64_C(1776088368026000);

File diff suppressed because it is too large Load diff

View file

@ -1,6 +1,6 @@
{
"version": "76.4",
"log_list_timestamp": "2025-11-30T12:54:31Z",
"version": "80.16",
"log_list_timestamp": "2026-01-04T12:53:12Z",
"operators": [
{
"name": "Google",
@ -289,8 +289,8 @@
"url": "https://wyvern.ct.digicert.com/2027h1/",
"mmd": 86400,
"state": {
"qualified": {
"timestamp": "2025-10-10T18:00:00Z"
"usable": {
"timestamp": "2025-12-20T18:00:00Z"
}
},
"temporal_interval": {
@ -305,8 +305,8 @@
"url": "https://wyvern.ct.digicert.com/2027h2/",
"mmd": 86400,
"state": {
"qualified": {
"timestamp": "2025-10-10T18:00:00Z"
"usable": {
"timestamp": "2025-12-20T18:00:00Z"
}
},
"temporal_interval": {
@ -369,8 +369,8 @@
"url": "https://sphinx.ct.digicert.com/2027h1/",
"mmd": 86400,
"state": {
"qualified": {
"timestamp": "2025-10-10T18:00:00Z"
"usable": {
"timestamp": "2025-12-20T18:00:00Z"
}
},
"temporal_interval": {
@ -385,8 +385,8 @@
"url": "https://sphinx.ct.digicert.com/2027h2/",
"mmd": 86400,
"state": {
"qualified": {
"timestamp": "2025-10-10T18:00:00Z"
"usable": {
"timestamp": "2025-12-20T18:00:00Z"
}
},
"temporal_interval": {
@ -699,8 +699,12 @@
"url": "https://oak.ct.letsencrypt.org/2025h2/",
"mmd": 86400,
"state": {
"usable": {
"timestamp": "2023-11-26T12:00:00Z"
"readonly": {
"timestamp": "2025-12-12T22:30:00Z",
"final_tree_head": {
"sha256_root_hash": "fn06m+bnTrDRl01hT1F1TdZPYfxciFZZn7NAayeGOVQ=",
"tree_size": 1958525022
}
}
},
"temporal_interval": {
@ -715,8 +719,12 @@
"url": "https://oak.ct.letsencrypt.org/2026h1/",
"mmd": 86400,
"state": {
"usable": {
"timestamp": "2024-11-04T00:00:00Z"
"readonly": {
"timestamp": "2025-12-12T22:30:00Z",
"final_tree_head": {
"sha256_root_hash": "deSRNfTNPgd9wfzoXIznvi+QUTxuK0R+daC6JGKGK3Q=",
"tree_size": 598614696
}
}
},
"temporal_interval": {
@ -731,8 +739,12 @@
"url": "https://oak.ct.letsencrypt.org/2026h2/",
"mmd": 86400,
"state": {
"usable": {
"timestamp": "2024-11-04T00:00:00Z"
"readonly": {
"timestamp": "2025-12-12T22:30:00Z",
"final_tree_head": {
"sha256_root_hash": "uTgg1k3DUbSFFdXewyyxbsQuCc9RupplMphTwtXqvf4=",
"tree_size": 130815692
}
}
},
"temporal_interval": {
@ -1001,7 +1013,25 @@
}
}
],
"tiled_logs": []
"tiled_logs": [
{
"description": "TrustAsia Luoshu2027",
"log_id": "VzRIzG4dLA3JS2nyh9Hv5IPHolxQxTILuzrep29usEE=",
"key": "MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEumSYzy6dUQlwTckPzKMKApMRinqxHIBlLfmrvx1SdMH1RTACi1wb1V18ss8YjlaC7Pch2OQa8OfRevub4Y9BDQ==",
"submission_url": "https://luoshu2027.trustasia.com/luoshu2027/",
"monitoring_url": "https://luoshu2027.trustasia.com/luoshu2027/",
"mmd": 60,
"state": {
"qualified": {
"timestamp": "2025-12-02T18:30:00Z"
}
},
"temporal_interval": {
"start_inclusive": "2026-12-24T00:00:00Z",
"end_exclusive": "2028-01-08T00:00:00Z"
}
}
]
},
{
"name": "Geomys",
@ -1146,8 +1176,8 @@
"monitoring_url": "https://halloumi2025h2.mon.ct.ipng.ch/",
"mmd": 60,
"state": {
"qualified": {
"timestamp": "2025-10-07T18:30:00Z"
"usable": {
"timestamp": "2025-12-17T18:30:00Z"
}
},
"temporal_interval": {
@ -1163,8 +1193,8 @@
"monitoring_url": "https://halloumi2026h1.mon.ct.ipng.ch/",
"mmd": 60,
"state": {
"qualified": {
"timestamp": "2025-10-07T18:30:00Z"
"usable": {
"timestamp": "2025-12-17T18:30:00Z"
}
},
"temporal_interval": {
@ -1197,8 +1227,8 @@
"monitoring_url": "https://halloumi2027h1.mon.ct.ipng.ch/",
"mmd": 60,
"state": {
"qualified": {
"timestamp": "2025-10-07T18:30:00Z"
"usable": {
"timestamp": "2025-12-17T18:30:00Z"
}
},
"temporal_interval": {
@ -1214,8 +1244,8 @@
"monitoring_url": "https://halloumi2027h2.mon.ct.ipng.ch/",
"mmd": 60,
"state": {
"qualified": {
"timestamp": "2025-10-07T18:30:00Z"
"usable": {
"timestamp": "2025-12-17T18:30:00Z"
}
},
"temporal_interval": {

View file

@ -74,6 +74,16 @@ namespace ApplicationServices {
# ifndef MREMAP_DONTUNMAP
# define MREMAP_DONTUNMAP 4
# endif
//
// This constant is ancient, but the kernel header for it conflicts
// with glibc's fcntl.h:
# ifndef F_LINUX_SPECIFIC_BASE
# define F_LINUX_SPECIFIC_BASE 1024
# endif
// Added in 6.10:
# ifndef F_DUPFD_QUERY
# define F_DUPFD_QUERY (F_LINUX_SPECIFIC_BASE + 3)
# endif
#endif
constexpr bool kIsDebug =
@ -143,6 +153,23 @@ static void RunGenericTests(SandboxTestingChild* child, bool aIsGMP = false) {
MOZ_RELEASE_ASSERT(flags & O_NONBLOCK);
}
}
if (!aIsGMP) {
constexpr auto name = "fcntl_dupfd_query"_ns;
int rv = fcntl(0, F_DUPFD_QUERY, 0);
// Expected:
// * success with rv == 1 (new kernel)
// * failure with EINVAL (old kernel)
// Rejected:
// * failure with ENOSYS or any other error
// * success with rv == 0 (shouldn't be possible)
MOZ_RELEASE_ASSERT(rv != 0);
if (rv > 0) {
child->PosixTest(name, true, 0);
} else { // (rv < 0), errno unchanged since fcntl
child->PosixTest(name, false, errno, Some(EINVAL));
}
}
#endif // XP_LINUX
}

View file

@ -118,6 +118,13 @@ static_assert(MADV_GUARD_INSTALL == 102);
static_assert(MADV_GUARD_REMOVE == 103);
#endif
// Added in 6.10
#ifndef F_DUPFD_QUERY
# define F_DUPFD_QUERY (F_LINUX_SPECIFIC_BASE + 3)
#else
static_assert(F_DUPFD_QUERY == (F_LINUX_SPECIFIC_BASE + 3));
#endif
// To avoid visual confusion between "ifdef ANDROID" and "ifndef ANDROID":
#ifndef ANDROID
# define DESKTOP
@ -1100,6 +1107,9 @@ class SandboxPolicyCommon : public SandboxPolicyBase {
#endif
// Not much different from other forms of dup(), and commonly used.
.Case(F_DUPFD_CLOEXEC, Allow())
// Used by Mesa, generally useful, and harmless: tests if
// two file descriptors refer to the same file description.
.Case(F_DUPFD_QUERY, Allow())
.Default(SandboxPolicyBase::EvaluateSyscall(sysno));
}