Alerts This Week
Warning Icon 1 687
Alerts This Week
Warning Icon 1 687

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
203

Mageia: 2022-0253 Moderate: Thunderbird Use-After-Free and CSP Bypass

A popup window could be resized in a way to overlay the address bar with web content. (CVE-2022-34479) Use-after-free in nsSHistory. (CVE-2022-34470) . MGASA-2022-0253 - Updated thunderbird packages fix security vulnerability Publication date: 05 Jul 2022 URL: https://advisories.mageia.org/MGASA-2022-0253.html Type: security Affected Mageia releases: 8 CVE: CVE-2022-2200, CVE-2022-2226, CVE-2022-31744, CVE-2022-34468, CVE-2022-34470, CVE-2022-34472, CVE-2022-34479, CVE-2022-34481, CVE-2022-34484 A popup window could be resized in a way to overlay the address bar with web content. (CVE-2022-34479) Use-after-free in nsSHistory. (CVE-2022-34470) CSP sandbox header without `allow-scripts` can be bypassed via retargeted javascript: URI. (CVE-2022-34468) An email with a mismatching OpenPGP signature date was accepted as valid. (CVE-2022-2226) Potential integer overflow in ReplaceElementsAt. (CVE-2022-34481) CSP bypass enabling stylesheet injection. (CVE-2022-31744) Unavailable PAC file resulted in OCSP requests being blocked. (CVE-2022-34472) Undesired attributes could be set as part of prototype pollution. (CVE-2022-2200) Memory safety bugs fixed in Thunderbird 91.11 and Thunderbird 102. (CVE-2022-34484) References: - https://bugs.mageia.org/show_bug.cgi?id=30587 - https://www.thunderbird.net/en-US/thunderbird/91.11.0/releasenotes/ - https://www.mozilla.org/en-US/security/advisories/mfsa2022-26/ - https://www.cve.org/CVERecord?id=CVE-2022-2200 - https://www.cve.org/CVERecord?id=CVE-2022-2226 - https://www.cve.org/CVERecord?id=CVE-2022-31744 - https://www.cve.org/CVERecord?id=CVE-2022-34468 - https://www.cve.org/CVERecord?id=CVE-2022-34470 - https://www.cve.org/CVERecord?id=CVE-2022-34472 - https://www.cve.org/CVERecord?id=CVE-2022-34479 - https://www.cve.org/CVERecord?id=CVE-2022-34481 - https://www.cve.org/CVERecord?id=CVE-2022-34484 SRPMS: - 8/core/thunderbird-91.11.0-1.mga8 - 8/core/thunderbird-l10n-91.11.0-1.mga8 . Recent updates for Thunderbird packagestarget various security vulnerabilities linked to CVE identifiers for users of Mageia 8.. Thunderbird Security, Mageia Advisory, Software Fix, Security Update. . LinuxSecurity.com Team

Calendar 2 Jul 05, 2022 Mageia
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here