Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

openSUSE Leap 15.1 Security Update: Critical Mozilla Thunderbird Fix

opensuse
Calendar Grey December 7, 2020
Dist Opensuse Esm H88
This critical release for Mozilla Thunderbird resolves a range of security vulnerabilities, improving the overall security framework.
An update that fixes 12 vulnerabilities is now available

Description

This update for MozillaThunderbird fixes the following issues:

TODO

- Mozilla Thunderbird 78.5.0

* new: OpenPGP: Added option to disable attaching the public key to a

signed message (bmo#1654950)

* new: MailExtensions: "compose_attachments" context added to Menus API

(bmo#1670822)

* new: MailExtensions: Menus API now available on displayed messages

(bmo#1670825)

* changed: MailExtensions: browser.tabs.create will now wait for

"mail-delayed-startup-finished" event (bmo#1674407)

* fixed: OpenPGP: Support for inline PGP messages improved (bmo#1672851)

* fixed: OpenPGP: Message security dialog showed unverified keys as

unavailable (bmo#1675285)

* fixed: Chat: New chat contact menu item did not function (bmo#1663321)

* fixed: Various theme and usability improvements (bmo#1673861)

* fixed: Various security fixes MFSA 2020-52 (bsc#1178894)

* CVE-2020-26951 (bmo#1667113)...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.1:

zypper in -t patch openSUSE-2020-2187=1

Package List

- openSUSE Leap 15.1 (x86_64):

MozillaThunderbird-78.5.0-lp151.2.59.1

MozillaThunderbird-debuginfo-78.5.0-lp151.2.59.1

MozillaThunderbird-debugsource-78.5.0-lp151.2.59.1

MozillaThunderbird-translations-common-78.5.0-lp151.2.59.1

MozillaThunderbird-translations-other-78.5.0-lp151.2.59.1

References

https://www.suse.com/security/cve/CVE-2020-15999.html

https://www.suse.com/security/cve/CVE-2020-16012.html

https://www.suse.com/security/cve/CVE-2020-26951.html

https://www.suse.com/security/cve/CVE-2020-26953.html

https://www.suse.com/security/cve/CVE-2020-26956.html

https://www.suse.com/security/cve/CVE-2020-26958.html

https://www.suse.com/security/cve/CVE-2020-26959.html

https://www.suse.com/security/cve/CVE-2020-26960.html

https://www.suse.com/security/cve/CVE-2020-26961.html

https://www.suse.com/security/cve/CVE-2020-26965.html

https://www.suse.com/security/cve/CVE-2020-26966.html

https://www.suse.com/security/cve/CVE-2020-26968.html

https://bugzilla.suse.com/1178894

openSUSE Security Announce mailing list -- security-announce@lists.opensuse.org

To unsubscribe, email security-announce-leave@lists.opensuse.org

List Netiquette:

List Archives:

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2020:2187-1
Rating: important
Affected Products: openSUSE Leap 15.1 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here