Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE: 2021:4781-1 Critical: MozillaThunderbird Stack Overflow Update

suse
Calendar Grey December 7, 2020
Dist Suse Esm H88
The latest Mozilla Thunderbird update (SUSE-SU-2020:3642-1) resolves serious stack overflow vulnerabilities and includes essential security patches.
An update that fixes one vulnerability is now available

Summary

This update for MozillaThunderbird fixes the following issues: - Mozilla Thunderbird was updated to 78.5.1 (MFSA 2020-53, bsc#1179530) - CVE-2020-26970: Fixed a stack overflow due to incorrect parsing of SMTP server response codes. - Various bug fixes Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Workstation Extension 15-SP1: zypper in -t patch SUSE-SLE-Product-WE-15-SP1-2020-3642=1 Package List: - SUSE Linux Enterprise Workstation Extension 15-SP1 (x86_64): MozillaThunderbird-78.5.1-3.110.2 MozillaThunderbird-debuginfo-78.5.1-3.110.2 MozillaThunderbird-debugsource-78.5.1-3.110.2

References

#1179530

Cross- CVE-2020-26970

Affected Products:

SUSE Linux Enterprise Workstation Extension 15-SP1

https://www.suse.com/security/cve/CVE-2020-26970.html

https://bugzilla.suse.com/show_bug.cgi?id=1179530

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2020:3642-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here