MGASA-2021-0164
Dashboard / Vulnerabilities / MGASA-2021-0164
MGASA-2021-0164
Summary: Updated thunderbird packages fix security vulnerabilities
Details: Texture upload into an unbound backing buffer resulted in an out-of-bound read. (CVE-2021-23981) Angle graphics library out of date. (CVE-2021-4127) Internal network hosts could have been probed by a malicious webpage. (CVE-2021-23982) Malicious extensions could have spoofed popup information. (CVE-2021-23984) Memory safety bugs fixed in Thunderbird 78.9. (CVE-2021-23987)
References: https://advisories.mageia.org/MGASA-2021-0164.html, https://bugs.mageia.org/show_bug.cgi?id=28642, https://www.thunderbird.net/en-US/thunderbird/78.9.0/releasenotes/, https://www.mozilla.org/en-US/security/advisories/mfsa2021-12/
Affected packages
Package
Name: thunderbird-l10n
Purl: pkg:rpm/mageia/thunderbird-l10n?arch=source&distro=mageia-7
Affected ranges
Type: ECOSYSTEM
Events:
