Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.announce.security > #3280

[SECURITY] [DSA 4754-1] thunderbird security update

Path csiph.com!news.mixmin.net!aioe.org!bofh.it!news.nic.it!robomod
From Moritz Muehlenhoff <jmm@debian.org>
Newsgroups linux.debian.announce.security
Subject [SECURITY] [DSA 4754-1] thunderbird security update
Date Sat, 29 Aug 2020 19:40:01 +0200
Message-ID <AJcZz-6O2-1@gated-at.bofh.it> (permalink)
X-Mailbox-Line From debian-security-announce-request@lists.debian.org Sat Aug 29 17:32:51 2020
Old-Return-Path <jmm@seger.debian.org>
X-Amavis-Spam-Status No, score=-12.839 tagged_above=-10000 required=5.3 tests=[BAYES_00=-2, DIGITS_LETTERS=1, DKIMWL_WL_HIGH=-0.959, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FVGT_m_MULTI_ODD=0.02, LDO_WHITELIST=-5, PGPSIGNATURE=-5, RCVD_IN_DNSWL_LOW=-0.7] autolearn=ham autolearn_force=no
Old-Dkim-Signature v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Content-Type:MIME-Version:Message-ID:Subject:To:From: Date:Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=Xc9Of/nzPrjms0TeB1unKbq7knZqXl67AtpA7f/7yKA=; b=JW rjMK/WICpLaaja8BCGsLlRSvC8Jkj3DRtyaVoyauSY6UZEQJsx+eJppiq8Xkf2W+Aob+i3j/rkndh qbPTeNGGK3W8TmOyWtLGp2kFIP3IP7w6E/jeLyCCI4FrED5KxGlCej3EUX7gmP2FNUSOTVuXAFlaR kmOV0RUvqZRP4hFpMwGCz8U+5AihYiofARik4/3JFlvxPBxEj+t1hpk9c3AfFyoICIQ+afxmu0Ziz kLC9aH3xUiPNeozgan4n20XFqZjZTJwnHpEalgw12Oqlmq1qVS28TLzCHNXDqfQn+heoRX8IVq6QK 2kKA2Kejc5zoFXJopgbmV+E/K2Qssmxw==;
MIME-Version 1.0
Content-Type text/plain; charset=us-ascii
Content-Disposition inline
User-Agent Mutt/1.10.1 (2018-07-13)
X-Debian PGP check passed for security officers
Priority urgent
Reply-To debian-security-announce-request@lists.debian.org
X-Mailing-List <debian-security-announce@lists.debian.org> archive/latest/3637
List-ID <debian-security-announce.lists.debian.org>
List-URL <http://lists.debian.org/debian-security-announce/>
List-Archive https://lists.debian.org/msgid-search/20200829173236.GA4922@seger.debian.org
Approved robomod@news.nic.it
Lines 46
Organization linux.* mail to news gateway
Sender robomod@news.nic.it
X-Original-Date Sat, 29 Aug 2020 17:32:36 +0000
X-Original-Message-ID <20200829173236.GA4922@seger.debian.org>
Xref csiph.com linux.debian.announce.security:3280

Show key headers only | View raw


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-4754-1                   security@debian.org
https://www.debian.org/security/                       Moritz Muehlenhoff
August 29, 2020                       https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : thunderbird
CVE ID         : CVE-2020-15664 CVE-2020-15669

Multiple security issues have been found in Thunderbird which could
result in the execution of arbitrary code or the unintended installation
of extensions.

For the stable distribution (buster), these problems have been fixed in
version 1:68.12.0-1~deb10u1.

We recommend that you upgrade your thunderbird packages.

For the detailed security status of thunderbird please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/thunderbird

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org
-----BEGIN PGP SIGNATURE-----
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=od9p
-----END PGP SIGNATURE-----

Back to linux.debian.announce.security | Previous | Next | Find similar | Unroll thread


Thread

[SECURITY] [DSA 4754-1] thunderbird security update Moritz Muehlenhoff <jmm@debian.org> - 2020-08-29 19:40 +0200

csiph-web