1
0
MozillaThunderbird/thunderbird-78.10.0.source.tar.xz.asc
Wolfgang Rosenauer 9e204516c2 - Mozilla Thunderbird 78.10.0
MFSA 2021-14 (bsc#1184960)
  * CVE-2021-23994 (bmo#1699077)
    Out of bound write due to lazy initialization
  * CVE-2021-23995 (bmo#1699835)
    Use-after-free in Responsive Design Mode
  * CVE-2021-23998 (bmo#1667456)
    Secure Lock icon could have been spoofed
  * CVE-2021-23961 (bmo#1677940)
    More internal network hosts could have been probed by a
    malicious webpage
  * CVE-2021-23999 (bmo#1691153)
    Blob URLs may have been granted additional privileges
  * CVE-2021-24002 (bmo#1702374)
    Arbitrary FTP command execution on FTP servers using an
    encoded URL
  * CVE-2021-29945 (bmo#1700690)
    Incorrect size computation in WebAssembly JIT could lead to
    null-reads
  * CVE-2021-29946 (bmo#1698503)
    Port blocking could be bypassed
  * CVE-2021-29948 (bmo#1692899)
    Race condition when reading from disk while verifying
    signatures
- recommend libotr5

OBS-URL: https://build.opensuse.org/package/show/mozilla:Factory/MozillaThunderbird?expand=0&rev=586
2021-04-20 07:54:22 +00:00

17 lines
833 B
Plaintext

-----BEGIN PGP SIGNATURE-----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=IS6u
-----END PGP SIGNATURE-----