Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 521
Alerts This Week
Warning Icon 1 521

SUSE Linux 15-SP1: SUSE-SU-2020:3900-1 Critical: Mozilla Thunderbird

suse
Calendar Grey December 21, 2020
Scroller Suse
Keep your SUSE Linux environment protected by applying the most recent Mozilla Thunderbird update that fixes significant security flaws.
An update that fixes 8 vulnerabilities is now available

Summary

This update for MozillaThunderbird fixes the following issues: - Mozilla Thunderbird 78.6 * new: MailExtensions: Added browser.windows.openDefaultBrowser() (bmo#1664708) * changed: Thunderbird now only shows quota exceeded indications on the main window (bmo#1671748) * changed: MailExtensions: menus API enabled in messages being composed (bmo#1670832) * changed: MailExtensions: Honor allowScriptsToClose argument in windows.create API function (bmo#1675940) * changed: MailExtensions: APIs that returned an accountId will reflect the account the message belongs to, not what is stored in message headers (bmo#1644032) * fixed: Keyboard shortcut for toggling message "read" status not shown in menus (bmo#1619248) * fixed: OpenPGP: After importing a secret key, Key Manager displayed

References

#1180039

Cross- CVE-2020-16042 CVE-2020-26971 CVE-2020-26973

CVE-2020-26974 CVE-2020-26978 CVE-2020-35111

CVE-2020-35112 CVE-2020-35113

Affected Products:

SUSE Linux Enterprise Workstation Extension 15-SP1

https://www.suse.com/security/cve/CVE-2020-16042.html

https://www.suse.com/security/cve/CVE-2020-26971.html

https://www.suse.com/security/cve/CVE-2020-26973.html

https://www.suse.com/security/cve/CVE-2020-26974.html

https://www.suse.com/security/cve/CVE-2020-26978.html

https://www.suse.com/security/cve/CVE-2020-35111.html

https://www.suse.com/security/cve/CVE-2020-35112.html

https://www.suse.com/security/cve/CVE-2020-35113.html

https://bugzilla.suse.com/1180039

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2020:3900-1
Rating: critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.