gpp_maybe
Security update for mozillathunderbird
SUSE-SLE-Module-Packagehub-Subpackages-15-SP4-2022-906
This update for MozillaThunderbird fixes the following issues: Updated to version 91.7 (bsc#1196900): - CVE-2022-26381: Fixed an invalid memory access due to text reflow when SVG objects were present. - CVE-2022-26383: Fixed an issue where, when resizing a popup after requesting fullscreen access, the popup would not display the fullscreen notification. - CVE-2022-26384: Fixed an iframe XSS sandbox bypass when allow-popups was used on the iframe. - CVE-2022-26386: Fixed an issue where downloadable temporary files were accessible to other local users. - CVE-2022-26387: Fixed a potential add-on signature verification bypass due to a race condition.
-
Release DateMar 21 2022
-
ReferencesBugzilla: 1196900
CVEs: CVE-2022-26386, CVE-2022-26384, CVE-2022-26381, CVE-2022-26383, CVE-2022-26387 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Package Hub 15.4 aarch64
-
PackagesMozillaThunderbird
An integrated email, news feeds, chat, and newsgroups clientMozillaThunderbird-translations-common91.7.0-150200.8.62.7 lock rpm lock src
Common translations for ThunderbirdMozillaThunderbird-translations-other91.7.0-150200.8.62.7 lock rpm
Extra translations for Thunderbird91.7.0-150200.8.62.7 lock rpm
SUSE Package Hub 15.4 ppc64le
-
PackagesMozillaThunderbird
An integrated email, news feeds, chat, and newsgroups clientMozillaThunderbird-translations-common91.7.0-150200.8.62.7 lock rpm lock src
Common translations for ThunderbirdMozillaThunderbird-translations-other91.7.0-150200.8.62.7 lock rpm
Extra translations for Thunderbird91.7.0-150200.8.62.7 lock rpm
SUSE Package Hub 15.4 s390x
-
PackagesMozillaThunderbird
An integrated email, news feeds, chat, and newsgroups clientMozillaThunderbird-translations-common91.7.0-150200.8.62.7 lock rpm lock src
Common translations for ThunderbirdMozillaThunderbird-translations-other91.7.0-150200.8.62.7 lock rpm
Extra translations for Thunderbird91.7.0-150200.8.62.7 lock rpm