[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RLSA-2021:5045 --- thunderbird

ID: oval:org.secpod.oval:def:4501289Date: (C)2023-04-03   (M)2024-02-08
Class: PATCHFamily: unix




Mozilla Thunderbird is a standalone mail and newsgroup client. This update upgrades Thunderbird to version 91.4.0. Security Fix: * Mozilla: Memory safety bugs fixed in Firefox 95 and Firefox ESR 91.4 * Mozilla: URL leakage when navigating while executing asynchronous function * Mozilla: Heap buffer overflow when using structured clone * Mozilla: Missing fullscreen and pointer lock notification when requesting both * Mozilla: GC rooting failure when calling wasm instance methods * Mozilla: External protocol handler parameters were unescaped * Mozilla: XMLHttpRequest error codes could have leaked the existence of an external protocol handler * Mozilla: Bypass of CSP sandbox directive when embedding * Mozilla: JavaScript unexpectedly enabled for the composition area * Mozilla: Denial of Service when using the Location API in a loop * Mozilla: Cursor spoofing could overlay user interface when native cursor is zoomed For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.

Platform:
Rocky Linux 8
Product:
thunderbird
Reference:
RLSA-2021:5045
CVE-2021-4129
CVE-2021-43528
CVE-2021-43536
CVE-2021-43537
CVE-2021-43538
CVE-2021-43539
CVE-2021-43541
CVE-2021-43542
CVE-2021-43543
CVE-2021-43545
CVE-2021-43546
CVE    11
CVE-2021-43528
CVE-2021-4129
CVE-2021-43541
CVE-2021-43542
...
CPE    1
cpe:/a:mozilla:thunderbird

© SecPod Technologies