[RHSA-2021:2883] thunderbird security update
Severity
Important
Affected Packages
4
CVEs
4
Mozilla Thunderbird is a standalone mail and newsgroup client.
This update upgrades Thunderbird to version 78.12.0.
Security Fix(es):
Mozilla: IMAP server responses sent by a MITM prior to STARTTLS could be processed (CVE-2021-29969)
Mozilla: Use-after-free in accessibility features of a document (CVE-2021-29970)
Mozilla: Memory safety bugs fixed in Firefox 90 and Firefox ESR 78.12 (CVE-2021-29976)
chromium-browser: Out of bounds write in ANGLE (CVE-2021-30547)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Package | Affected Version |
---|---|
pkg:rpm/redhat/thunderbird?arch=x86_64&distro=redhat-8.4 | < 78.12.0-3.el8_4 |
pkg:rpm/redhat/thunderbird?arch=s390x&distro=redhat-8.4 | < 78.12.0-3.el8_4 |
pkg:rpm/redhat/thunderbird?arch=ppc64le&distro=redhat-8.4 | < 78.12.0-3.el8_4 |
pkg:rpm/redhat/thunderbird?arch=aarch64&distro=redhat-8.4 | < 78.12.0-3.el8_4 |
- ID
- RHSA-2021:2883
- Severity
- important
- URL
- https://access.redhat.com/errata/RHSA-2021:2883
- Published
-
2021-07-26T00:00:00
(3 years ago) - Modified
-
2021-07-26T00:00:00
(3 years ago) - Rights
- Copyright 2021 Red Hat, Inc.
- Other Advisories
-
- ALAS2-2021-1709
- ALPINE:CVE-2021-29969
- ALPINE:CVE-2021-29970
- ALPINE:CVE-2021-29976
- ALPINE:CVE-2021-30547
- ALSA-2021:2743
- ALSA-2021:2883
- ASA-202106-31
- ASA-202106-32
- ASA-202106-45
- ASA-202107-20
- ASA-202107-21
- DSA-4939-1
- DSA-4940-1
- ELSA-2021-2741
- ELSA-2021-2743
- ELSA-2021-2881
- ELSA-2021-2883
- FEDORA-2021-ca58c57bdf
- FEDORA-2021-f94dadff78
- FEDORA-2022-e39987b17d
- FREEBSD:20B3AB21-C9DF-11EB-8558-3065EC8FD3EC
- GLSA-202202-03
- GLSA-202208-14
- MFSA-2021-28
- MFSA-2021-29
- MFSA-2021-30
- MS:CVE-2021-30547
- openSUSE-SU-2021:0881-1
- openSUSE-SU-2021:0938-1
- openSUSE-SU-2021:0948-1
- openSUSE-SU-2021:0949-1
- openSUSE-SU-2021:1066-1
- openSUSE-SU-2021:1091-1
- openSUSE-SU-2021:2393-1
- openSUSE-SU-2021:2458-1
- openSUSE-SU-2022:0110-1
- RHSA-2021:2741
- RHSA-2021:2743
- RHSA-2021:2881
- RLSA-2021:2883
- SUSE-SU-2021:2389-1
- SUSE-SU-2021:2393-1
- SUSE-SU-2021:2458-1
- SUSE-SU-2021:2478-1
- USN-5011-1
- USN-5058-1
Source | # ID | Name | URL |
---|---|---|---|
Bugzilla | 1970109 | https://bugzilla.redhat.com/1970109 | |
Bugzilla | 1982013 | https://bugzilla.redhat.com/1982013 | |
Bugzilla | 1982014 | https://bugzilla.redhat.com/1982014 | |
Bugzilla | 1982015 | https://bugzilla.redhat.com/1982015 | |
RHSA | RHSA-2021:2883 | https://access.redhat.com/errata/RHSA-2021:2883 | |
CVE | CVE-2021-29969 | https://access.redhat.com/security/cve/CVE-2021-29969 | |
CVE | CVE-2021-29970 | https://access.redhat.com/security/cve/CVE-2021-29970 | |
CVE | CVE-2021-29976 | https://access.redhat.com/security/cve/CVE-2021-29976 | |
CVE | CVE-2021-30547 | https://access.redhat.com/security/cve/CVE-2021-30547 |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/redhat/thunderbird?arch=x86_64&distro=redhat-8.4 | redhat | thunderbird | < 78.12.0-3.el8_4 | redhat-8.4 | x86_64 | |
Affected | pkg:rpm/redhat/thunderbird?arch=s390x&distro=redhat-8.4 | redhat | thunderbird | < 78.12.0-3.el8_4 | redhat-8.4 | s390x | |
Affected | pkg:rpm/redhat/thunderbird?arch=ppc64le&distro=redhat-8.4 | redhat | thunderbird | < 78.12.0-3.el8_4 | redhat-8.4 | ppc64le | |
Affected | pkg:rpm/redhat/thunderbird?arch=aarch64&distro=redhat-8.4 | redhat | thunderbird | < 78.12.0-3.el8_4 | redhat-8.4 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |