Oval Definition:oval:com.redhat.rhsa:def:20171561
Revision Date:2017-06-21Version:638
Title:RHSA-2017:1561: thunderbird security update (Important)
Description:Mozilla Thunderbird is a standalone mail and newsgroup client.

This update upgrades Thunderbird to version 52.2.0.

Security Fix(es):

  • Multiple flaws were found in the processing of malformed web content. A web page containing malicious content could cause Thunderbird to crash or, potentially, execute arbitrary code with the privileges of the user running Thunderbird. (CVE-2017-5470, CVE-2017-5472, CVE-2017-7749, CVE-2017-7750, CVE-2017-7751, CVE-2017-7756, CVE-2017-7771, CVE-2017-7772, CVE-2017-7773, CVE-2017-7774, CVE-2017-7775, CVE-2017-7776, CVE-2017-7777, CVE-2017-7778, CVE-2017-7752, CVE-2017-7754, CVE-2017-7757, CVE-2017-7758, CVE-2017-7764)

    Red Hat would like to thank the Mozilla project for reporting these issues. Upstream acknowledges Nils, Nicolas Trippar (Zimperium zLabs), Tyson Smith, Mats Palmgren, Philipp, Masayuki Nakano, Christian Holler, Andrew McCreight, Gary Kwong, André Bargull, Carsten Book, Jesse Schwartzentruber, Julian Hector, Marcia Knous, Ronald Crane, Samuel Erb, Holger Fuhrmannek, Abhishek Arya, and F. Alonso (revskills) as the original reporters.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2017-5470
    CVE-2017-5472
    CVE-2017-7749
    CVE-2017-7750
    CVE-2017-7751
    CVE-2017-7752
    CVE-2017-7754
    CVE-2017-7756
    CVE-2017-7757
    CVE-2017-7758
    CVE-2017-7764
    CVE-2017-7771
    CVE-2017-7772
    CVE-2017-7773
    CVE-2017-7774
    CVE-2017-7775
    CVE-2017-7776
    CVE-2017-7777
    CVE-2017-7778
    RHSA-2017:1561
    RHSA-2017:1561-00
    RHSA-2017:1561-01
    Platform(s):Red Hat Enterprise Linux 6
    Red Hat Enterprise Linux 7
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND thunderbird is earlier than 0:52.2.0-1.el7_3
  • AND thunderbird is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 6 is installed
  • AND thunderbird is earlier than 0:52.2.0-1.el6_9
  • AND thunderbird is signed with Red Hat redhatrelease2 key
  • BACK