Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

openSUSE 15.5, 15.6: 2024:2790-1 Important: Memory Corruption Fixes

suse
Calendar Grey August 6, 2024
Dist Suse Esm H88
Crucial security enhancements for Mozilla Thunderbird address multiple vulnerabilities. Learn how to apply updates effectively on SUSE platforms.
* bsc#1226316 Cross-References: * CVE-2024-6600 * CVE-2024-6601

Summary

## This update for MozillaThunderbird fixes the following issues: Update to Mozilla Thunderbird 115.13 (MFSA 2024-31, bsc#1226316): Security fixes: * CVE-2024-6600: Memory corruption in WebGL API (bmo#1888340) * CVE-2024-6601: Race condition in permission assignment (bmo#1890748) * CVE-2024-6602: Memory corruption in NSS (bmo#1895032) * CVE-2024-6603: Memory corruption in thread creation (bmo#1895081) * CVE-2024-6604: Memory safety bugs fixed in Firefox 128, Firefox ESR 115.13, Thunderbird 128, and Thunderbird 115.13 (bmo#1748105, bmo#1837550, bmo#1884266) Other fixes: * fixed: After starting Thunderbird, the message list position was sometimes set to an incorrect position (bmo#1896009) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like

References

* bsc#1226316

Cross-

* CVE-2024-6600

* CVE-2024-6601

* CVE-2024-6602

* CVE-2024-6603

* CVE-2024-6604

CVSS scores:

Affected Products:

* openSUSE Leap 15.5

* openSUSE Leap 15.6

* SUSE Linux Enterprise Desktop 15 SP4 LTSS 15-SP4

* SUSE Linux Enterprise Desktop 15 SP5

* SUSE Linux Enterprise Desktop 15 SP6

* SUSE Linux Enterprise High Performance Computing 15 SP5

* SUSE Linux Enterprise Micro 5.5

* SUSE Linux Enterprise Real Time 15 SP5

* SUSE Linux Enterprise Real Time 15 SP6

* SUSE Linux Enterprise Server 15 SP5

* SUSE Linux Enterprise Server 15 SP6

* SUSE Linux Enterprise Server for SAP Applications 15 SP5

* SUSE Linux Enterprise Server for SAP Applications 15 SP6

* SUSE Linux Enterprise Workstation Extension 15 SP5

* SUSE Linux Enterprise Workstation Extension 15 SP6

* SUSE Package Hub 15 15-SP5

* SUSE Package Hub 15 15-SP6

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2024:2790-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here