Several security issues were fixed in Thunderbird.
Software Description:
- thunderbird: Mozilla Open Source mail and newsgroup client
Details:
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to cause a denial of service,
obtain sensitive information, bypass security restrictions, bypass
same-origin restrictions, conduct cross-site scripting (XSS) attacks, or
execute arbitrary code. (CVE-2019-11757, CVE-2019-11758, CVE-2019-11759,
CVE-2019-11760, CVE-2019-11761, CVE-2019-11762, CVE-2019-11763,
CVE-2019-11764, CVE-2019-17005, CVE-2019-17008, CVE-2019-17010,
CVE-2019-17011, CVE-2019-17012, CVE-2019-17016, CVE-2019-17017,
CVE-2019-17022, CVE-2019-17024, CVE-2019-17026, CVE-2019-20503,
CVE-2020-6798, CVE-2020-6800, CVE-2020-6805, CVE-2020-6806, CVE-2020-6807,
CVE-2020-6812, CVE-2020-6814, CVE-2020-6819, CVE-2020-6820, CVE-2020...
The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS: thunderbird 1:68.7.0+build1-0ubuntu0.16.04.2 After a standard system update you need to restart Thunderbird to make all the necessary changes.
https://ubuntu.com/security/notices/USN-4335-1
CVE-2019-11745, CVE-2019-11755, CVE-2019-11757, CVE-2019-11758,
CVE-2019-11759, CVE-2019-11760, CVE-2019-11761, CVE-2019-11762,
CVE-2019-11763, CVE-2019-11764, CVE-2019-15903, CVE-2019-17005,
CVE-2019-17008, CVE-2019-17010, CVE-2019-17011, CVE-2019-17012,
CVE-2019-17016, CVE-2019-17017, CVE-2019-17022, CVE-2019-17024,
CVE-2019-17026, CVE-2019-20503, CVE-2020-6792, CVE-2020-6793,
CVE-2020-6794, CVE-2020-6795, CVE-2020-6798, CVE-2020-6800,
CVE-2020-6805, CVE-2020-6806, CVE-2020-6807, CVE-2020-6811,
CVE-2020-6812, CVE-2020-6814, CVE-2020-6819, CVE-2020-6820,
CVE-2020-6821, CVE-2020-6822, CVE-2020-6825
Get the latest Linux and open source security news straight to your inbox.