thunderbird-115.6.0-1.el9_3.ML.1

エラータID: AXSA:2024-7343:01

Release date: 
Wednesday, January 10, 2024 - 08:41
Subject: 
thunderbird-115.6.0-1.el9_3.ML.1
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

Mozilla Thunderbird is a standalone mail and newsgroup client.

This update upgrades Thunderbird to version 115.6.0.

Security Fix(es):

Mozilla: Heap-buffer-overflow affecting WebGL
DrawElementsInstanced method with Mesa VM driver (CVE-2023-6856)
Mozilla: Memory safety bugs fixed in Firefox 121, Firefox ESR 115.6, and
Thunderbird 115.6 (CVE-2023-6864)
Mozilla: S/MIME signature accepted despite mismatching message date
(CVE-2023-50761)
Mozilla: Truncated signed text was shown with a valid OpenPGP signature
(CVE-2023-50762)
Mozilla: Symlinks may resolve to smaller than expected buffers
(CVE-2023-6857)
Mozilla: Heap buffer overflow in nsTextFragment (CVE-2023-6858)
Mozilla: Use-after-free in PR_GetIdentitiesLayer (CVE-2023-6859)
Mozilla: Potential sandbox escape due to VideoBridge lack of
texture validation (CVE-2023-6860)
Mozilla: Heap buffer overflow affected
nsWindow::PickerOpen(void) in headless mode (CVE-2023-6861)
Mozilla: Use-after-free in nsDNSService (CVE-2023-6862)
Mozilla: Undefined behavior in ShutdownObserver()
(CVE-2023-6863)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.

CVE(s):
CVE-2023-6856
CVE-2023-6857
CVE-2023-6858
CVE-2023-6859
CVE-2023-6860
CVE-2023-6861
CVE-2023-6862
CVE-2023-6863
CVE-2023-6864
CVE-2023-50761
CVE-2023-50762

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. thunderbird-115.6.0-1.el9_3.ML.1.src.rpm
    MD5: 671f6d5890540ed01e4c7e3cf2152681
    SHA-256: 2b8fdad15fdaf5977d3d46fb06155af61504f4e7e745eb08b77a2e5cbb345bcc
    Size: 704.92 MB

Asianux Server 9 for x86_64
  1. thunderbird-115.6.0-1.el9_3.ML.1.x86_64.rpm
    MD5: 3b2c053ea4d041cca892d4d30bddc350
    SHA-256: 0078263a5b6114ba581d6e59fabe07b44e352bc2351afe96297c5c5b2a10451e
    Size: 106.90 MB