[openSUSE-SU-2019:1583-1] Security update for MozillaThunderbird

Severity Important
Affected Packages 8
CVEs 4

Security update for MozillaThunderbird

This update for MozillaThunderbird fixes the following security issues:

  • CVE-2019-11703: Fixed a heap-based buffer overflow in icalmemorystrdupanddequote() (bsc#1137595).
  • CVE-2019-11704: Fixed a heap-based buffer overflow in parser_get_next_char() (bsc#1137595).
  • CVE-2019-11705: Fixed a stack-based buffer overflow in icalrecur_add_bydayrules() (bsc#1137595).
  • CVE-2019-11706: Fixed a type confusion in icaltimezone_get_vtimezone_properties() (bsc#1137595).

This update was imported from the SUSE:SLE-15:Update update project.

Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/opensuse/MozillaThunderbird?arch=x86_64&distro=opensuse-leap-15.1 opensuse MozillaThunderbird < 60.7.0-lp151.2.4.1 opensuse-leap-15.1 x86_64
Affected pkg:rpm/opensuse/MozillaThunderbird?arch=x86_64&distro=opensuse-leap-15.0 opensuse MozillaThunderbird < 60.7.0-lp151.2.4.1 opensuse-leap-15.0 x86_64
Affected pkg:rpm/opensuse/MozillaThunderbird-translations-other?arch=x86_64&distro=opensuse-leap-15.1 opensuse MozillaThunderbird-translations-other < 60.7.0-lp151.2.4.1 opensuse-leap-15.1 x86_64
Affected pkg:rpm/opensuse/MozillaThunderbird-translations-other?arch=x86_64&distro=opensuse-leap-15.0 opensuse MozillaThunderbird-translations-other < 60.7.0-lp151.2.4.1 opensuse-leap-15.0 x86_64
Affected pkg:rpm/opensuse/MozillaThunderbird-translations-common?arch=x86_64&distro=opensuse-leap-15.1 opensuse MozillaThunderbird-translations-common < 60.7.0-lp151.2.4.1 opensuse-leap-15.1 x86_64
Affected pkg:rpm/opensuse/MozillaThunderbird-translations-common?arch=x86_64&distro=opensuse-leap-15.0 opensuse MozillaThunderbird-translations-common < 60.7.0-lp151.2.4.1 opensuse-leap-15.0 x86_64
Affected pkg:rpm/opensuse/MozillaThunderbird-buildsymbols?arch=x86_64&distro=opensuse-leap-15.1 opensuse MozillaThunderbird-buildsymbols < 60.7.0-lp151.2.4.1 opensuse-leap-15.1 x86_64
Affected pkg:rpm/opensuse/MozillaThunderbird-buildsymbols?arch=x86_64&distro=opensuse-leap-15.0 opensuse MozillaThunderbird-buildsymbols < 60.7.0-lp151.2.4.1 opensuse-leap-15.0 x86_64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...