Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Mageia: 2022-0452 Moderate: Thunderbird Remote Content Threat

mageia
Calendar Grey December 7, 2022
Dist Mageia Esm H88
Newly released Thunderbird updates address security issues discovered on December 6, 2022, that affect the retrieval of external content.
Quoting from an HTML email with certain tags will trigger network requests and load remote content, regardless of a configuration to block remote content

Summary

Quoting from an HTML email with certain tags will trigger network requests and load remote content, regardless of a configuration to block remote content. (CVE-2022-45414)

References

- https://bugs.mageia.org/show_bug.cgi?id=31210

- https://www.thunderbird.net/en-US/thunderbird/102.5.1/releasenotes/

- https://www.mozilla.org/en-US/security/advisories/mfsa2022-50/

- https://www.cve.org/CVERecord?id=CVE-2022-45414

Resolution

SRPMS

- 8/core/thunderbird-102.5.1-1.mga8

- 8/core/thunderbird-l10n-102.5.1-1.mga8

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 06 Dec 2022
URL: https://advisories.mageia.org/MGASA-2022-0452.html
Type: security
CVE: CVE-2022-45414

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here