[openSUSE-SU-2021:1091-1] Security update for MozillaThunderbird
Severity
Important
Affected Packages
3
CVEs
4
Security update for MozillaThunderbird
This update for MozillaThunderbird fixes the following issues:
Mozilla Thunderbird 78.12
- fixed: Sending an email containing HTML links with spaces in the URL sometimes resulted in broken links
- fixed: Folder Pane display theme fixes for macOS
- fixed: Chat account settings did not always save as expected
- fixed: RSS feed subscriptions sometimes lost
- fixed: Calendar: A parsing error for alarm triggers of type 'DURATION' caused sync problems for some users
- fixed: Various security fixes
MFSA 2021-30 (bsc#1188275)
- CVE-2021-29969: IMAP server responses sent by a MITM prior to STARTTLS could be processed
- CVE-2021-29970: Use-after-free in accessibility features of a document
- CVE-2021-30547: Out of bounds write in ANGLE
- CVE-2021-29976: Memory safety bugs fixed in Thunderbird 78.12
This update was imported from the SUSE:SLE-15-SP2:Update update project.
Package | Affected Version |
---|---|
pkg:rpm/opensuse/MozillaThunderbird?arch=x86_64&distro=opensuse-leap-15.2 | < 78.12.0-lp152.2.48.2 |
pkg:rpm/opensuse/MozillaThunderbird-translations-other?arch=x86_64&distro=opensuse-leap-15.2 | < 78.12.0-lp152.2.48.2 |
pkg:rpm/opensuse/MozillaThunderbird-translations-common?arch=x86_64&distro=opensuse-leap-15.2 | < 78.12.0-lp152.2.48.2 |
- ID
- openSUSE-SU-2021:1091-1
- Severity
- important
- URL
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/ABQT6TDIB2IQ4ZZNUZXMHLE7ZDVD4YBM/
- Published
-
2021-08-04T00:14:42
(3 years ago) - Modified
-
2021-08-04T00:14:42
(3 years ago) - Rights
- Copyright 2024 SUSE LLC. All rights reserved.
- Other Advisories
-
- ALAS2-2021-1709
- ALPINE:CVE-2021-29969
- ALPINE:CVE-2021-29970
- ALPINE:CVE-2021-29976
- ALPINE:CVE-2021-30547
- ALSA-2021:2743
- ALSA-2021:2883
- ASA-202106-31
- ASA-202106-32
- ASA-202106-45
- ASA-202107-20
- ASA-202107-21
- DSA-4939-1
- DSA-4940-1
- ELSA-2021-2741
- ELSA-2021-2743
- ELSA-2021-2881
- ELSA-2021-2883
- FEDORA-2021-ca58c57bdf
- FEDORA-2021-f94dadff78
- FEDORA-2022-e39987b17d
- FREEBSD:20B3AB21-C9DF-11EB-8558-3065EC8FD3EC
- GLSA-202202-03
- GLSA-202208-14
- MFSA-2021-28
- MFSA-2021-29
- MFSA-2021-30
- MS:CVE-2021-30547
- openSUSE-SU-2021:0881-1
- openSUSE-SU-2021:0938-1
- openSUSE-SU-2021:0948-1
- openSUSE-SU-2021:0949-1
- openSUSE-SU-2021:1066-1
- openSUSE-SU-2021:2393-1
- openSUSE-SU-2021:2458-1
- openSUSE-SU-2022:0110-1
- RHSA-2021:2741
- RHSA-2021:2743
- RHSA-2021:2881
- RHSA-2021:2883
- RLSA-2021:2883
- SUSE-SU-2021:2389-1
- SUSE-SU-2021:2393-1
- SUSE-SU-2021:2458-1
- SUSE-SU-2021:2478-1
- USN-5011-1
- USN-5058-1
Source | # ID | Name | URL |
---|---|---|---|
Suse | SUSE ratings | https://www.suse.com/support/security/rating/ | |
Suse | URL of this CSAF notice | https://ftp.suse.com/pub/projects/security/csaf/opensuse-su-2021_1091-1.json | |
Suse | URL for openSUSE-SU-2021:1091-1 | https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/ABQT6TDIB2IQ4ZZNUZXMHLE7ZDVD4YBM/ | |
Suse | E-Mail link for openSUSE-SU-2021:1091-1 | https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/ABQT6TDIB2IQ4ZZNUZXMHLE7ZDVD4YBM/ | |
Bugzilla | SUSE Bug 1188275 | https://bugzilla.suse.com/1188275 | |
CVE | SUSE CVE CVE-2021-29969 page | https://www.suse.com/security/cve/CVE-2021-29969/ | |
CVE | SUSE CVE CVE-2021-29970 page | https://www.suse.com/security/cve/CVE-2021-29970/ | |
CVE | SUSE CVE CVE-2021-29976 page | https://www.suse.com/security/cve/CVE-2021-29976/ | |
CVE | SUSE CVE CVE-2021-30547 page | https://www.suse.com/security/cve/CVE-2021-30547/ |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/opensuse/MozillaThunderbird?arch=x86_64&distro=opensuse-leap-15.2 | opensuse | MozillaThunderbird | < 78.12.0-lp152.2.48.2 | opensuse-leap-15.2 | x86_64 | |
Affected | pkg:rpm/opensuse/MozillaThunderbird-translations-other?arch=x86_64&distro=opensuse-leap-15.2 | opensuse | MozillaThunderbird-translations-other | < 78.12.0-lp152.2.48.2 | opensuse-leap-15.2 | x86_64 | |
Affected | pkg:rpm/opensuse/MozillaThunderbird-translations-common?arch=x86_64&distro=opensuse-leap-15.2 | opensuse | MozillaThunderbird-translations-common | < 78.12.0-lp152.2.48.2 | opensuse-leap-15.2 | x86_64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |