[openSUSE-SU-2019:1583-1] Security update for MozillaThunderbird
Severity
Important
Affected Packages
8
CVEs
4
Security update for MozillaThunderbird
This update for MozillaThunderbird fixes the following security issues:
- CVE-2019-11703: Fixed a heap-based buffer overflow in icalmemorystrdupanddequote() (bsc#1137595).
- CVE-2019-11704: Fixed a heap-based buffer overflow in parser_get_next_char() (bsc#1137595).
- CVE-2019-11705: Fixed a stack-based buffer overflow in icalrecur_add_bydayrules() (bsc#1137595).
- CVE-2019-11706: Fixed a type confusion in icaltimezone_get_vtimezone_properties() (bsc#1137595).
This update was imported from the SUSE:SLE-15:Update update project.
Package | Affected Version |
---|---|
pkg:rpm/opensuse/MozillaThunderbird?arch=x86_64&distro=opensuse-leap-15.1 | < 60.7.0-lp151.2.4.1 |
pkg:rpm/opensuse/MozillaThunderbird?arch=x86_64&distro=opensuse-leap-15.0 | < 60.7.0-lp151.2.4.1 |
pkg:rpm/opensuse/MozillaThunderbird-translations-other?arch=x86_64&distro=opensuse-leap-15.1 | < 60.7.0-lp151.2.4.1 |
pkg:rpm/opensuse/MozillaThunderbird-translations-other?arch=x86_64&distro=opensuse-leap-15.0 | < 60.7.0-lp151.2.4.1 |
pkg:rpm/opensuse/MozillaThunderbird-translations-common?arch=x86_64&distro=opensuse-leap-15.1 | < 60.7.0-lp151.2.4.1 |
pkg:rpm/opensuse/MozillaThunderbird-translations-common?arch=x86_64&distro=opensuse-leap-15.0 | < 60.7.0-lp151.2.4.1 |
pkg:rpm/opensuse/MozillaThunderbird-buildsymbols?arch=x86_64&distro=opensuse-leap-15.1 | < 60.7.0-lp151.2.4.1 |
pkg:rpm/opensuse/MozillaThunderbird-buildsymbols?arch=x86_64&distro=opensuse-leap-15.0 | < 60.7.0-lp151.2.4.1 |
- ID
- openSUSE-SU-2019:1583-1
- Severity
- important
- URL
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/FZRVVKWNJN3X4BODFXF57K5CF6KN4CQH/#FZRVVKWNJN3X4BODFXF57K5CF6KN4CQH
- Published
-
2019-06-18T15:41:01
(5 years ago) - Modified
-
2019-06-18T15:41:01
(5 years ago) - Rights
- Copyright 2024 SUSE LLC. All rights reserved.
- Other Advisories
-
- ALAS2-2019-1250
- ASA-201906-10
- DSA-4464-1
- ELSA-2019-1623
- ELSA-2019-1624
- ELSA-2019-1626
- FREEBSD:98F1241F-8C09-4237-AD0D-67FB4158EA7A
- GLSA-201908-20
- MFSA-2019-17
- openSUSE-SU-2019:1606-1
- openSUSE-SU-2019:1664-1
- RHSA-2019:1623
- RHSA-2019:1624
- RHSA-2019:1626
- SSA:2019-164-01
- SUSE-SU-2019:1495-1
- SUSE-SU-2019:1683-1
- USN-4028-1
Source | # ID | Name | URL |
---|---|---|---|
Suse | SUSE ratings | https://www.suse.com/support/security/rating/ | |
Suse | URL of this CSAF notice | https://ftp.suse.com/pub/projects/security/csaf/opensuse-su-2019_1583-1.json | |
Suse | URL for openSUSE-SU-2019:1583-1 | https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/FZRVVKWNJN3X4BODFXF57K5CF6KN4CQH/#FZRVVKWNJN3X4BODFXF57K5CF6KN4CQH | |
Suse | E-Mail link for openSUSE-SU-2019:1583-1 | https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/FZRVVKWNJN3X4BODFXF57K5CF6KN4CQH/#FZRVVKWNJN3X4BODFXF57K5CF6KN4CQH | |
Bugzilla | SUSE Bug 1137595 | https://bugzilla.suse.com/1137595 | |
CVE | SUSE CVE CVE-2019-11703 page | https://www.suse.com/security/cve/CVE-2019-11703/ | |
CVE | SUSE CVE CVE-2019-11704 page | https://www.suse.com/security/cve/CVE-2019-11704/ | |
CVE | SUSE CVE CVE-2019-11705 page | https://www.suse.com/security/cve/CVE-2019-11705/ | |
CVE | SUSE CVE CVE-2019-11706 page | https://www.suse.com/security/cve/CVE-2019-11706/ |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/opensuse/MozillaThunderbird?arch=x86_64&distro=opensuse-leap-15.1 | opensuse | MozillaThunderbird | < 60.7.0-lp151.2.4.1 | opensuse-leap-15.1 | x86_64 | |
Affected | pkg:rpm/opensuse/MozillaThunderbird?arch=x86_64&distro=opensuse-leap-15.0 | opensuse | MozillaThunderbird | < 60.7.0-lp151.2.4.1 | opensuse-leap-15.0 | x86_64 | |
Affected | pkg:rpm/opensuse/MozillaThunderbird-translations-other?arch=x86_64&distro=opensuse-leap-15.1 | opensuse | MozillaThunderbird-translations-other | < 60.7.0-lp151.2.4.1 | opensuse-leap-15.1 | x86_64 | |
Affected | pkg:rpm/opensuse/MozillaThunderbird-translations-other?arch=x86_64&distro=opensuse-leap-15.0 | opensuse | MozillaThunderbird-translations-other | < 60.7.0-lp151.2.4.1 | opensuse-leap-15.0 | x86_64 | |
Affected | pkg:rpm/opensuse/MozillaThunderbird-translations-common?arch=x86_64&distro=opensuse-leap-15.1 | opensuse | MozillaThunderbird-translations-common | < 60.7.0-lp151.2.4.1 | opensuse-leap-15.1 | x86_64 | |
Affected | pkg:rpm/opensuse/MozillaThunderbird-translations-common?arch=x86_64&distro=opensuse-leap-15.0 | opensuse | MozillaThunderbird-translations-common | < 60.7.0-lp151.2.4.1 | opensuse-leap-15.0 | x86_64 | |
Affected | pkg:rpm/opensuse/MozillaThunderbird-buildsymbols?arch=x86_64&distro=opensuse-leap-15.1 | opensuse | MozillaThunderbird-buildsymbols | < 60.7.0-lp151.2.4.1 | opensuse-leap-15.1 | x86_64 | |
Affected | pkg:rpm/opensuse/MozillaThunderbird-buildsymbols?arch=x86_64&distro=opensuse-leap-15.0 | opensuse | MozillaThunderbird-buildsymbols | < 60.7.0-lp151.2.4.1 | opensuse-leap-15.0 | x86_64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |