Oval Definition:oval:com.redhat.rhsa:def:20120140
Revision Date:2012-02-16Version:634
Title:RHSA-2012:0140: thunderbird security update (Critical)
Description:Mozilla Thunderbird is a standalone mail and newsgroup client.

  • A heap-based buffer overflow flaw was found in the way Thunderbird handled PNG (Portable Network Graphics) images. An HTML mail message or remote content containing a specially-crafted PNG image could cause Thunderbird to crash or, possibly, execute arbitrary code with the privileges of the user running Thunderbird. (CVE-2011-3026)

    All Thunderbird users should upgrade to this updated package, which corrects this issue. After installing the update, Thunderbird must be restarted for the changes to take effect.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2011-3026
    CVE-2011-3026
    RHSA-2012:0140
    RHSA-2012:0140-01
    RHSA-2012:0140-01
    Platform(s):Red Hat Enterprise Linux 6
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 6 is installed
  • AND thunderbird is earlier than 0:3.1.18-2.el6_2
  • AND thunderbird is signed with Red Hat redhatrelease2 key
  • BACK