Revision Date: | 2022-03-21 | Version: | 1 |
Title: | Security update for MozillaThunderbird (Important) |
Description: |
This update for MozillaThunderbird fixes the following issues:
Updated to version 91.7 (bsc#1196900): - CVE-2022-26381: Fixed an invalid memory access due to text reflow when SVG objects were present. - CVE-2022-26383: Fixed an issue where, when resizing a popup after requesting fullscreen access, the popup would not display the fullscreen notification. - CVE-2022-26384: Fixed an iframe XSS sandbox bypass when allow-popups was used on the iframe. - CVE-2022-26386: Fixed an issue where downloadable temporary files were accessible to other local users. - CVE-2022-26387: Fixed a potential add-on signature verification bypass due to a race condition.
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1043990 1055117 1065729 1152457 1152489 1156395 1167260 1168838 1174416 1174426 1178089 1179243 1179851 1180846 1181161 1182613 1183063 1183203 1183289 1184208 1184209 1184436 1184514 1184650 1184724 1184728 1184730 1184731 1184736 1184737 1184738 1184740 1184741 1184742 1184760 1184811 1184893 1184934 1184942 1184957 1184969 1184984 1185041 1185113 1185233 1185244 1185269 1185365 1185454 1185472 1185491 1185549 1185586 1185587 1196900 CVE-2021-29155 CVE-2021-29650 CVE-2022-26381 CVE-2022-26383 CVE-2022-26384 CVE-2022-26386 CVE-2022-26387 SUSE-SU-2021:1574-1 SUSE-SU-2022:0906-1
|
Platform(s): | SUSE Linux Enterprise Desktop 15 SP3 SUSE Linux Enterprise High Performance Computing 15 SP2 SUSE Linux Enterprise Module for Live Patching 15 SP2 SUSE Linux Enterprise Server 15 SP2 SUSE Linux Enterprise Server 15 SP3 SUSE Linux Enterprise Server for SAP Applications 15 SP2 SUSE Linux Enterprise Server for SAP Applications 15 SP3 SUSE Linux Enterprise Workstation Extension 15 SP3
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 SP2 is installed AND Package Information
kernel-default-livepatch-5.3.18-24.64.1 is installed
OR kernel-default-livepatch-devel-5.3.18-24.64.1 is installed
OR kernel-livepatch-5_3_18-24_64-default-1-5.3.1 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Desktop 15 SP3 is installed
OR SUSE Linux Enterprise Server 15 SP3 is installed
OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
OR SUSE Linux Enterprise Workstation Extension 15 SP3 is installed
AND Package Information
MozillaThunderbird-91.7.0-150200.8.62.7 is installed
OR MozillaThunderbird-translations-common-91.7.0-150200.8.62.7 is installed
OR MozillaThunderbird-translations-other-91.7.0-150200.8.62.7 is installed
|