[RHSA-2022:5774] thunderbird security update
Severity
Important
Affected Packages
4
CVEs
3
Mozilla Thunderbird is a standalone mail and newsgroup client.
This update upgrades Thunderbird to version 91.12.0.
Security Fix(es):
Mozilla: Memory safety bugs fixed in Firefox 103 and 102.1 (CVE-2022-2505)
Mozilla: Directory indexes for bundled resources reflected URL parameters (CVE-2022-36318)
Mozilla: Mouse Position spoofing with CSS transforms (CVE-2022-36319)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Package | Affected Version |
---|---|
pkg:rpm/redhat/thunderbird?arch=x86_64&distro=redhat-8.6 | < 91.12.0-1.el8_6 |
pkg:rpm/redhat/thunderbird?arch=s390x&distro=redhat-8.6 | < 91.12.0-1.el8_6 |
pkg:rpm/redhat/thunderbird?arch=ppc64le&distro=redhat-8.6 | < 91.12.0-1.el8_6 |
pkg:rpm/redhat/thunderbird?arch=aarch64&distro=redhat-8.6 | < 91.12.0-1.el8_6 |
- ID
- RHSA-2022:5774
- Severity
- important
- URL
- https://access.redhat.com/errata/RHSA-2022:5774
- Published
-
2022-08-01T00:00:00
(2 years ago) - Modified
-
2022-08-01T00:00:00
(2 years ago) - Rights
- Copyright 2022 Red Hat, Inc.
- Other Advisories
-
- ALAS2-2022-1855
- ALPINE:CVE-2022-2505
- ALPINE:CVE-2022-36318
- ALPINE:CVE-2022-36319
- ALSA-2022:5767
- ALSA-2022:5774
- ALSA-2022:5777
- DSA-5193-1
- DSA-5195-1
- ELSA-2022-5767
- ELSA-2022-5773
- ELSA-2022-5774
- ELSA-2022-5776
- ELSA-2022-5777
- ELSA-2022-5778
- GLSA-202208-08
- GLSA-202208-14
- MFSA-2022-28
- MFSA-2022-29
- MFSA-2022-30
- MFSA-2022-31
- MFSA-2022-32
- RHSA-2022:5767
- RHSA-2022:5773
- RHSA-2022:5776
- RHSA-2022:5777
- RHSA-2022:5778
- RLSA-2022:5774
- RLSA-2022:5777
- SUSE-SU-2022:2596-1
- SUSE-SU-2022:2602-1
- SUSE-SU-2022:2611-1
- SUSE-SU-2022:2748-1
- SUSE-SU-2022:3272-1
- SUSE-SU-2022:3273-1
- SUSE-SU-2022:3281-1
- SUSE-SU-2022:3396-1
- USN-5536-1
- USN-5663-1
Source | # ID | Name | URL |
---|---|---|---|
Bugzilla | 2111907 | https://bugzilla.redhat.com/2111907 | |
Bugzilla | 2111908 | https://bugzilla.redhat.com/2111908 | |
Bugzilla | 2111910 | https://bugzilla.redhat.com/2111910 | |
RHSA | RHSA-2022:5774 | https://access.redhat.com/errata/RHSA-2022:5774 | |
CVE | CVE-2022-2505 | https://access.redhat.com/security/cve/CVE-2022-2505 | |
CVE | CVE-2022-36318 | https://access.redhat.com/security/cve/CVE-2022-36318 | |
CVE | CVE-2022-36319 | https://access.redhat.com/security/cve/CVE-2022-36319 |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/redhat/thunderbird?arch=x86_64&distro=redhat-8.6 | redhat | thunderbird | < 91.12.0-1.el8_6 | redhat-8.6 | x86_64 | |
Affected | pkg:rpm/redhat/thunderbird?arch=s390x&distro=redhat-8.6 | redhat | thunderbird | < 91.12.0-1.el8_6 | redhat-8.6 | s390x | |
Affected | pkg:rpm/redhat/thunderbird?arch=ppc64le&distro=redhat-8.6 | redhat | thunderbird | < 91.12.0-1.el8_6 | redhat-8.6 | ppc64le | |
Affected | pkg:rpm/redhat/thunderbird?arch=aarch64&distro=redhat-8.6 | redhat | thunderbird | < 91.12.0-1.el8_6 | redhat-8.6 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |