|
|
Subscribe / Log in / New account

Debian alert DLA-4311-1 (thunderbird)

From:  Emilio Pozuelo Monfort <pochu@debian.org>
To:  <debian-lts-announce@lists.debian.org>
Subject:  [SECURITY] [DLA 4311-1] thunderbird security update
Date:  Fri, 26 Sep 2025 08:01:09 +0200
Message-ID:  <20250926060109.1F39F5F000A6@kamino>

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4311-1 debian-lts@lists.debian.org https://www.debian.org/lts/security/ Emilio Pozuelo Monfort September 26, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : thunderbird Version : 1:140.3.0esr-1~deb11u1 CVE ID : CVE-2025-10527 CVE-2025-10528 CVE-2025-10529 CVE-2025-10532 CVE-2025-10533 CVE-2025-10536 CVE-2025-10537 Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. Debian follows the Thunderbird upstream releases. Support for the 128.x series has ended, so starting with this update we're now following the 140.x series. For Debian 11 bullseye, these problems have been fixed in version 1:140.3.0esr-1~deb11u1. We recommend that you upgrade your thunderbird packages. For the detailed security status of thunderbird please refer to its security tracker page at: https://security-tracker.debian.org/tracker/thunderbird Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEcJymx+vmJZxd92Q+nUbEiOQ2gwIFAmjWLCIACgkQnUbEiOQ2 gwKPBA//TXQZqClb0dFdmyZgCqXfOH9RKnVAaT2AaRS4HfC0lBWSEWxrpgHDo2Qx xVTR+EomdJylD/F+zp9rqR7smx52ciz2pIcH6bAPWVVSfGIEkg01fh07xe+5cGao xY76I3OT8JnkGON0AmLwtRFx5lt9HrfIembW5ZTfkiuvt+9E1l2/8sZVDLBUPmus goUtkt/pDCJwXmm434tzFsYwpu0B/e99NxqmuSGdtcHewA/OnzCGtSwgmgCWLnun 4QnKr7oiebFZUMcEsTwisf4RRivnA/NRQjqdpdAqtudek19gF4aV5vQ19myqDxlJ pNR7LJnGcVt9NxdOssMINZtLjjeyf4lpwEYM/QLWPnXGklHTH24TLNDS8uMdyN8a ZrWHf3DSnjqQzaIP1Es78dTCTJPV8q+ul4ztjn/xib8AXd0yDI+Fc4CkVJtasudz Jj9HEc4tXLFfUhBzPJHvzv3UB2uBFyyJDSYXrd+RbOxRyPkCAMEhL9b+IXYIXwee xWbO5MsfW5XmANjpFYd4KhCipYg3ZSvPDHxK5OZN7JKynSPxVNT6I8NEMn17lB7w YK/TjeHwoGUEr6YRIiKH2e+jpVjrbwTcCEhNKbULCntvPfbgUB/LAuCeRZuqnqCT SBuxPVN+dLAbzCXdsmb5BA7yKuGFqZf5/E/4vNZNwVcDl3/uJ7g= =hmOv -----END PGP SIGNATURE-----


to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds