Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Mageia: 2021-0242 Moderate: Thunderbird Memory Safety Fix

mageia
Calendar Grey June 8, 2021
Dist Mageia Esm H88
Enhanced Thunderbird releases for Mageia tackle identified security concerns related to memory integrity and boundaries reading flaws.
The updated packages fix security vulnerabilities: Out of bounds-read when parsing a `WM_COPYDATA` message

Summary

The updated packages fix security vulnerabilities:
Out of bounds-read when parsing a `WM_COPYDATA` message. (CVE-2021-29964)
Memory safety bugs fixed in Thunderbird 78.11. (CVE-2021-29967)

References

- https://bugs.mageia.org/show_bug.cgi?id=29073

- https://www.mozilla.org/en-US/security/advisories/mfsa2021-26/

- https://www.thunderbird.net/en-US/thunderbird/78.11.0/releasenotes/

- https://www.cve.org/CVERecord?id=CVE-2021-29964

- https://www.cve.org/CVERecord?id=CVE-2021-29967

Resolution

SRPMS

- 7/core/thunderbird-78.11.0-1.mga7

- 7/core/thunderbird-l10n-78.11.0-1.mga7

- 8/core/thunderbird-78.11.0-1.mga8

- 8/core/thunderbird-l10n-78.11.0-1.mga8

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 08 Jun 2021
URL: https://advisories.mageia.org/MGASA-2021-0242.html
Type: security
CVE: CVE-2021-29964, CVE-2021-29967

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here