MGASA-2017-0432
Dashboard / Vulnerabilities / MGASA-2017-0432
MGASA-2017-0432
Summary: Updated thunderbird packages fix security vulnerabilities & bugs
Details: The updated packages fix several bugs and some security issues: Use-after-free of PressShell while restyling layout. (CVE-2017-7828) Cross-origin URL information leak through Resource Timing API. (CVE-2017-7830) Memory safety bugs fixed in Firefox 57, Firefox ESR 52.5, and Thunderbird 52.5. (CVE-2017-7826)
References: https://advisories.mageia.org/MGASA-2017-0432.html, https://bugs.mageia.org/show_bug.cgi?id=22079, https://www.mozilla.org/en-US/thunderbird/52.5.0/releasenotes/, https://www.mozilla.org/en-US/security/advisories/mfsa2017-26/
Affected packages
Package
Name: thunderbird
Purl: pkg:rpm/mageia/thunderbird?arch=source&distro=mageia-5
Affected ranges
Type: ECOSYSTEM
Events:
