Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
203

Mageia: 2020-0378 Moderate: Thunderbird AppCache Poisoning and More

AppCache manifest poisoning due to url encoded character processing (CVE-2020-12415). Use-after-free in WebRTC VideoBroadcaster (CVE-2020-12416). . MGASA-2020-0378 - Updated Thunderbird packages fix security vulnerabilities Publication date: 30 Sep 2020 URL: https://advisories.mageia.org/MGASA-2020-0378.html Type: security Affected Mageia releases: 7 CVE: CVE-2020-12415, CVE-2020-12416, CVE-2020-12422, CVE-2020-12424, CVE-2020-12425, CVE-2020-12426, CVE-2020-15648, CVE-2020-15673, CVE-2020-15676, CVE-2020-15677, CVE-2020-15678 AppCache manifest poisoning due to url encoded character processing (CVE-2020-12415). Use-after-free in WebRTC VideoBroadcaster (CVE-2020-12416). Integer overflow in nsJPEGEncoder::emptyOutputBuffer (CVE-2020-12422). WebRTC permission prompt could have been bypassed by a compromised content process (CVE-2020-12424). Out of bound read in Date.parse() (CVE-2020-12425). Memory safety bugs fixed in Thunderbird 78 (CVE-2020-12426). X-Frame-Options bypass using object or embed tags (CVE-2020-15648). Memory safety bugs fixed in Thunderbird 78.3 (CVE-2020-15673). XSS when pasting attacker-controlled data into a contenteditable element (CVE-2020-15676). Download origin spoofing via redirect (CVE-2020-15677). When recursing through layers while scrolling, an iterator may have become invalid, resulting in a potential use-after-free scenario (CVE-2020-15678). Note that Enigmail will no longer let you manage your PGP keys, but instead will only provide a migration tool. Thunderbird will no longer use the system keyring and GnuPG; instead, it will handle PGP keys internally. To use your existing PGP keys with Thunderbird 78 and above, you must use the migration tool from Enigmail upon the first Thunderbird run. See the migration notes on the Mageia wiki. Also note that, to protect your keys, you should define a master password in Thunderbird. References: - https://bugs.mageia.org/show_bug.cgi?id=26965 -https://www.mozilla.org/en-US/security/advisories/mfsa2020-29/ - https://www.mozilla.org/en-US/security/advisories/mfsa2020-44/ - https://www.thunderbird.net/en-US/thunderbird/78.0/releasenotes/ - https://www.thunderbird.net/en-US/thunderbird/78.0.1/releasenotes/ - https://www.thunderbird.net/en-US/thunderbird/78.1.0/releasenotes/ - https://www.thunderbird.net/en-US/thunderbird/78.1.1/releasenotes/ - https://www.thunderbird.net/en-US/thunderbird/78.2.0/releasenotes/ - https://www.thunderbird.net/en-US/thunderbird/78.2.1/releasenotes/ - https://www.thunderbird.net/en-US/thunderbird/78.2.2/releasenotes/ - https://www.thunderbird.net/en-US/thunderbird/78.3.0/releasenotes/ - https://www.thunderbird.net/en-US/thunderbird/78.3.1/releasenotes/ - https://wiki.mageia.org/en/Migration_from_Thunderbird_68_and_Enigmail_to_Thunderbird_78 - https://www.cve.org/CVERecord?id=CVE-2020-12415 - https://www.cve.org/CVERecord?id=CVE-2020-12416 - https://www.cve.org/CVERecord?id=CVE-2020-12422 - https://www.cve.org/CVERecord?id=CVE-2020-12424 - https://www.cve.org/CVERecord?id=CVE-2020-12425 - https://www.cve.org/CVERecord?id=CVE-2020-12426 - https://www.cve.org/CVERecord?id=CVE-2020-15648 - https://www.cve.org/CVERecord?id=CVE-2020-15673 - https://www.cve.org/CVERecord?id=CVE-2020-15676 - https://www.cve.org/CVERecord?id=CVE-2020-15677 - https://www.cve.org/CVERecord?id=CVE-2020-15678 SRPMS: - 7/core/thunderbird-78.3.1-3.mga7 - 7/core/thunderbird-l10n-78.3.1-1.mga7 . Revised Firefox versions resolve several vulnerabilities such as AppCache manipulation, memory leaks, and additional concerns.. Thunderbird Security, Mageia Patch, AppCache Issue. . LinuxSecurity.com Team

Calendar 2 Sep 30, 2020 Mageia
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here