Mageia alert MGASA-2020-0396 (thunderbird)
From: | Mageia Updates <buildsystem-daemon@mageia.org> | |
To: | updates-announce@ml.mageia.org | |
Subject: | [updates-announce] MGASA-2020-0396: Updated thunderbird packages fix security vulnerabilities | |
Date: | Sat, 24 Oct 2020 19:52:51 +0200 | |
Message-ID: | <20201024175251.2EE069F6EB@duvel.mageia.org> | |
Archive-link: | Article |
MGASA-2020-0396 - Updated thunderbird packages fix security vulnerabilities Publication date: 24 Oct 2020 URL: https://advisories.mageia.org/MGASA-2020-0396.html Type: security Affected Mageia releases: 7 CVE: CVE-2020-15683, CVE-2020-15969 Description: Memory safety bugs fixed in Thunderbird 78.4. (CVE-2020-15683) Use-after-free in usersctp. (CVE-2020-15969) References: - https://bugs.mageia.org/show_bug.cgi?id=27438 - https://www.thunderbird.net/en-US/thunderbird/78.3.3/rele... - https://www.thunderbird.net/en-US/thunderbird/78.4.0/rele... - https://www.mozilla.org/en-US/security/advisories/mfsa202... - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1... - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1... SRPMS: - 7/core/thunderbird-78.4.0-1.mga7 - 7/core/thunderbird-l10n-78.4.0-1.mga7