* bsc#1235151 * bsc#1236588 * bsc#1236590 Cross-References: . # Security update for curl Announcement ID: SUSE-SU-2025:20144-1 Release Date: 2025-03-12T10:46:56Z Rating: moderate References: * bsc#1235151 * bsc#1236588 * bsc#1236590 Cross-References: * CVE-2025-0167 * CVE-2025-0725 CVSS scores: * CVE-2025-0167 ( SUSE ): 5.9 CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2025-0167 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N * CVE-2025-0167 ( NVD ): 3.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N * CVE-2025-0725 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-0725 ( SUSE ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L * CVE-2025-0725 ( NVD ): 7.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L Affected Products: * SUSE Linux Micro 6.0 An update that solves two vulnerabilities and has one fix can now be installed. ## Description: This update for curl fixes the following issues: Security issues fixed: * CVE-2025-0725: Fixed gzip integer overflow (bsc#1236590) * CVE-2025-0167: Fixed netrc and default credential leak (bsc#1236588) Other issues fixed: * Make sure the TLS handshake after a successful STARTTLS command is fully done before further sending/receiving on the connection. (bsc#1235151) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.0 zypper in -t patch SUSE-SLE-Micro-6.0-239=1 ## Package List: * SUSE Linux Micro 6.0 (aarch64 s390x x86_64) * curl-debuginfo-8.6.0-6.1 * libcurl4-8.6.0-6.1 * curl-debugsource-8.6.0-6.1 * libcurl4-debuginfo-8.6.0-6.1 * curl-8.6.0-6.1 ## References: * https://www.suse.com/security/cve/CVE-2025-0167.html * https://www.suse.com/security/cve/CVE-2025-0725.html *https://bugzilla.suse.com/show_bug.cgi?id=1235151 * https://bugzilla.suse.com/show_bug.cgi?id=1236588 * https://bugzilla.suse.com/show_bug.cgi?id=1236590 . SUSE enhancement addresses multiple vulnerabilities in libxml2 for Micro 6.0, promoting improved security with the latest fixes.. SUSE Security, Curl Update, Moderate Threats, Linux Patching. . LinuxSecurity.com Team
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-0265 https://linux.oracle.com/errata/ELSA-2024-0265.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable LinuxNetwork: x86_64: java-1.8.0-openjdk-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-demo-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-devel-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-headless-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-javadoc-1.8.0.402.b06-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.402.b06-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-src-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-slowdebug-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.402.b06-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.402.b06-2.0.1.el9.x86_64.rpm aarch64: java-1.8.0-openjdk-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-demo-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-devel-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-headless-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-javadoc-1.8.0.402.b06-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.402.b06-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-src-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-slowdebug-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.402.b06-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.402.b06-2.0.1.el9.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol9/SRPMS-updates//java-1.8.0-openjdk-1.8.0.402.b06-2.0.1.el9.src.rpm Related CVEs: CVE-2024-20918 CVE-2024-20919 CVE-2024-20921 CVE-2024-20926 CVE-2024-20945 CVE-2024-20952 Description of changes: [1:1.8.0.402.b06-0.2.0.1] - Update to shenandoah-jdk8u402-b06 (GA) - Update release notes for shenandoah-8u402-b06. - Add Oracle vendor bug URL [Orabug: 34340155] _______________________________________________ El-errata mailing list
The container suse/nginx was updated. The following patches have been included in this update:. SUSE Container Update Advisory: suse/nginx ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2023:3512-1 Container Tags : suse/nginx:1.21 , suse/nginx:1.21-5.18 , suse/nginx:latest Container Release : 5.18 Severity : important Type : security References : 1107342 1215215 1215286 1215313 1215434 1215891 CVE-2023-4813 ----------------------------------------------------------------- The container suse/nginx was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-RU-2023:4105-1 Released: Wed Oct 18 08:15:40 2023 Summary: Recommended update for openssl-1_1 Type: recommended Severity: moderate References: 1215215 This update for openssl-1_1 fixes the following issues: - Displays 'fips' in the version string (bsc#1215215) ----------------------------------------------------------------- Advisory ID: SUSE-SU-2023:4110-1 Released: Wed Oct 18 12:35:26 2023 Summary: Security update for glibc Type: security Severity: important References: 1215286,1215891,CVE-2023-4813 This update for glibc fixes the following issues: Security issue fixed: - CVE-2023-4813: Fixed a potential use-after-free in gaih_inet() (bsc#1215286, BZ #28931) Also a regression from a previous update was fixed: - elf: Align argument of __munmap to page size (bsc#1215891, BZ #28676) ----------------------------------------------------------------- Advisory ID: SUSE-RU-2023:4153-1 Released: Fri Oct 20 19:27:58 2023 Summary: Recommended update for systemd Type: recommended Severity: moderate References: 1215313 This update for systemd fixes the following issues: - Fix mismatch of nss-resolve version in Package Hub (no source codechanges) ----------------------------------------------------------------- Advisory ID: SUSE-RU-2023:4154-1 Released: Fri Oct 20 19:33:25 2023 Summary: Recommended update for aaa_base Type: recommended Severity: moderate References: 1107342,1215434 This update for aaa_base fixes the following issues: - Respect /etc/update-alternatives/java when setting JAVA_HOME (bsc#1215434,bsc#1107342) The following package changes have been done: - glibc-2.31-150300.63.1 updated - libsystemd0-249.16-150400.8.35.5 updated - libopenssl1_1-1.1.1l-150500.17.19.1 updated - libopenssl1_1-hmac-1.1.1l-150500.17.19.1 updated - aaa_base-84.87+git20180409.04c9dae-150300.10.6.2 updated - container:sles15-image-15.0.0-36.5.46 updated . SUSE Container Update Notice for suse/nginx announcing critical security enhancements and fixes integrated into the distribution.. suse/nginx, container update advisory, important updates, security patches. . Severity: Important. LinuxSecurity.com Team
The container bci/rust was updated. The following patches have been included in this update:. SUSE Container Update Advisory: bci/rust ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2023:1385-1 Container Tags : bci/rust:1.68 , bci/rust:1.68-2.14 , bci/rust:latest Container Release : 2.14 Severity : moderate Type : security References : 1210507 CVE-2023-29383 ----------------------------------------------------------------- The container bci/rust was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2023:2066-1 Released: Fri Apr 28 13:54:17 2023 Summary: Security update for shadow Type: security Severity: moderate References: 1210507,CVE-2023-29383 This update for shadow fixes the following issues: - CVE-2023-29383: Fixed apparent /etc/shadow manipulation via chfn (bsc#1210507). The following package changes have been done: - login_defs-4.8.1-150400.10.6.1 updated - shadow-4.8.1-150400.10.6.1 updated . Routine security enhancement for bci/rust image tackling CVE-2023-29384, featuring embedded fixes.. bci/rust container, SUSE security update, container advisory. . LinuxSecurity.com Team
An update that fixes three vulnerabilities is now available.. openSUSE Security Update: Security update for python ______________________________________________________________________________ Announcement ID: openSUSE-SU-2019:2393-1 Rating: moderate References: #1130840 #1149955 #1153238 Cross-References: CVE-2019-16056 CVE-2019-16935 CVE-2019-9947 Affected Products: openSUSE Leap 15.1 ______________________________________________________________________________ An update that fixes three vulnerabilities is now available. Description: This update for python fixes the following issues: Security issues fixed: - CVE-2019-9947: Fixed an insufficient validation of URL paths with embedded whitespace or control characters that could allow HTTP header injections. (bsc#1130840) - CVE-2019-16056: Fixed a parser issue in the email module. (bsc#1149955) - CVE-2019-16935: Fixed a reflected XSS in python/Lib/DocXMLRPCServer.py (bsc#1153238). This update was imported from the SUSE:SLE-15:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.1: zypper in -t patch openSUSE-2019-2393=1 Package List: - openSUSE Leap 15.1 (i586 x86_64): libpython2_7-1_0-2.7.14-lp151.10.10.2 libpython2_7-1_0-debuginfo-2.7.14-lp151.10.10.2 python-2.7.14-lp151.10.10.1 python-base-2.7.14-lp151.10.10.2 python-base-debuginfo-2.7.14-lp151.10.10.2 python-base-debugsource-2.7.14-lp151.10.10.2 python-curses-2.7.14-lp151.10.10.1 python-curses-debuginfo-2.7.14-lp151.10.10.1 python-debuginfo-2.7.14-lp151.10.10.1 python-debugsource-2.7.14-lp151.10.10.1 python-demo-2.7.14-lp151.10.10.1 python-devel-2.7.14-lp151.10.10.2 python-gdbm-2.7.14-lp151.10.10.1 python-gdbm-debuginfo-2.7.14-lp151.10.10.1 python-idle-2.7.14-lp151.10.10.1 python-tk-2.7.14-lp151.10.10.1 python-tk-debuginfo-2.7.14-lp151.10.10.1 python-xml-2.7.14-lp151.10.10.2 python-xml-debuginfo-2.7.14-lp151.10.10.2 - openSUSE Leap 15.1 (x86_64): libpython2_7-1_0-32bit-2.7.14-lp151.10.10.2 libpython2_7-1_0-32bit-debuginfo-2.7.14-lp151.10.10.2 python-32bit-2.7.14-lp151.10.10.1 python-32bit-debuginfo-2.7.14-lp151.10.10.1 python-base-32bit-2.7.14-lp151.10.10.2 python-base-32bit-debuginfo-2.7.14-lp151.10.10.2 - openSUSE Leap 15.1 (noarch): python-doc-2.7.14-lp151.10.10.1 python-doc-pdf-2.7.14-lp151.10.10.1 References: https://www.suse.com/security/cve/CVE-2019-16056.html https://www.suse.com/security/cve/CVE-2019-16935.html https://www.suse.com/security/cve/CVE-2019-9947.html https://bugzilla.suse.com/1130840 https://bugzilla.suse.com/1149955 https://bugzilla.suse.com/1153238 -- . A new update for openSUSE addresses various vulnerabilities in Python, improving both security and functionality for its users.. openSUSE Security Update, Python Issues Fix, Software Update Advisory. . Severity: Important. LinuxSecurity.com Team
An update that fixes one vulnerability is now available.. openSUSE Security Update: Security update for bzip2 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2019:1435-1 Rating: low References: #985657 Cross-References: CVE-2016-3189 Affected Products: openSUSE Leap 15.1 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for bzip2 fixes the following issues: Security issue fixed: - CVE-2016-3189: Fixed a use-after-free in bzip2recover (bsc#985657). This update was imported from the SUSE:SLE-15:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.1: zypper in -t patch openSUSE-2019-1435=1 Package List: - openSUSE Leap 15.1 (i586 x86_64): bzip2-1.0.6-lp151.5.3.1 bzip2-debuginfo-1.0.6-lp151.5.3.1 bzip2-debugsource-1.0.6-lp151.5.3.1 libbz2-1-1.0.6-lp151.5.3.1 libbz2-1-debuginfo-1.0.6-lp151.5.3.1 libbz2-devel-1.0.6-lp151.5.3.1 - openSUSE Leap 15.1 (x86_64): libbz2-1-32bit-1.0.6-lp151.5.3.1 libbz2-1-32bit-debuginfo-1.0.6-lp151.5.3.1 libbz2-devel-32bit-1.0.6-lp151.5.3.1 - openSUSE Leap 15.1 (noarch): bzip2-doc-1.0.6-lp151.5.3.1 References: https://www.suse.com/security/cve/CVE-2016-3189.html https://bugzilla.suse.com/985657 -- . Essential openSUSE Security Patch for zlib tackling a minor vulnerability, further information available.. openSUSE Security Update,bzip2 patch,security fixes,low severity. . Severity: Low. LinuxSecurity.com Team
memory leak when destroying guest without PT devices [XSA-207] (#1422492) update patches for XSA-208 after upstream revision (no functional change). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2017-84ed105d3e 2017-02-20 15:20:58.382370 -------------------------------------------------------------------------------- Name : xen Product : Fedora 25 Version : 4.7.1 Release : 8.fc25 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor -------------------------------------------------------------------------------- Update Information: memory leak when destroying guest without PT devices [XSA-207] (#1422492) update patches for XSA-208 after upstream revision (no functional change) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1418277 - xsa207 xen: memory leak when destroying guest without PT devices (XSA-207) https://bugzilla.redhat.com/show_bug.cgi?id=1418277 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade xen' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
An update that fixes 28 vulnerabilities is now available. An update that fixes 28 vulnerabilities is now available. An update that fixes 28 vulnerabilities is now available.. openSUSE Security Update: Security update for Mozilla Thunderbird ______________________________________________________________________________ Announcement ID: openSUSE-SU-2016:1778-1 Rating: important References: #969894 #977333 #977375 #977376 #983549 #984126 #984637 #986162 Cross-References: CVE-2016-1952 CVE-2016-1953 CVE-2016-1954 CVE-2016-1955 CVE-2016-1956 CVE-2016-1957 CVE-2016-1960 CVE-2016-1961 CVE-2016-1964 CVE-2016-1974 CVE-2016-1977 CVE-2016-2790 CVE-2016-2791 CVE-2016-2792 CVE-2016-2793 CVE-2016-2794 CVE-2016-2795 CVE-2016-2796 CVE-2016-2797 CVE-2016-2798 CVE-2016-2799 CVE-2016-2800 CVE-2016-2801 CVE-2016-2802 CVE-2016-2806 CVE-2016-2807 CVE-2016-2815 CVE-2016-2818 Affected Products: openSUSE Leap 42.1 openSUSE 13.2 ______________________________________________________________________________ An update that fixes 28 vulnerabilities is now available. Description: This update contains Mozilla Thunderbird 45.2. (boo#983549) It fixes security issues mostly affecting the e-mail program when used in a browser context, such as viewing a web page or HTMl formatted e-mail. The following vulnerabilities were fixed: - CVE-2016-2818, CVE-2016-2815: Memory safety bugs (boo#983549, MFSA2016-49) Contains the following security fixes from the 45.1 release: (boo#977333) - CVE-2016-2806, CVE-2016-2807: Miscellaneous memory safety hazards (boo#977375, boo#977376, MFSA 2016-39) Contains the following security fixes from the 45.0 release: (boo#969894) - CVE-2016-1952, CVE-2016-1953: Miscellaneous memory safety hazards (MFSA 2016-16) - CVE-2016-1954: Local file overwriting and potential privilege escalation through CSP reports (MFSA 2016-17) - CVE-2016-1955: CSP reports fail to strip location information for embedded iframe pages (MFSA 2016-18) - CVE-2016-1956: Linux video memory DOS with Intel drivers (MFSA 2016-19) - CVE-2016-1957: Memory leak in libstagefright when deleting an array during MP4 processing (MFSA 2016-20) - CVE-2016-1960: Use-after-free in HTML5 string parser (MFSA 2016-23) - CVE-2016-1961: Use-after-free in SetBody (MFSA 2016-24) - CVE-2016-1964: Use-after-free during XML transformations (MFSA 2016-27) - CVE-2016-1974: Out-of-bounds read in HTML parser following a failed allocation (MFSA 2016-34) The graphite font shaping library was disabled, addressing the following font vulnerabilities: - MFSA 2016-37/CVE-2016-1977/CVE-2016-2790/CVE-2016-2791/ CVE-2016-2792/CVE-2016-2793/CVE-2016-2794/CVE-2016-2795/ CVE-2016-2796/CVE-2016-2797/CVE-2016-2798/CVE-2016-2799/ CVE-2016-2800/CVE-2016-2801/CVE-2016-2802 The following tracked packaging changes are included: - fix build issues with gcc/binutils combination used in Leap 42.2 (boo#984637) - gcc6 fixes (boo#986162) - running on 48bit va aarch64 (boo#984126) Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE Leap 42.1: zypper in -t patch openSUSE-2016-851=1 - openSUSE 13.2: zypper in -t patch openSUSE-2016-851=1 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE Leap 42.1 (i586 x86_64): MozillaThunderbird-45.2-16.1 MozillaThunderbird-buildsymbols-45.2-16.1 MozillaThunderbird-debuginfo-45.2-16.1 MozillaThunderbird-debugsource-45.2-16.1 MozillaThunderbird-devel-45.2-16.1 MozillaThunderbird-translations-common-45.2-16.1 MozillaThunderbird-translations-other-45.2-16.1 -openSUSE 13.2 (i586 x86_64): MozillaThunderbird-45.2-43.1 MozillaThunderbird-buildsymbols-45.2-43.1 MozillaThunderbird-debuginfo-45.2-43.1 MozillaThunderbird-debugsource-45.2-43.1 MozillaThunderbird-devel-45.2-43.1 MozillaThunderbird-translations-common-45.2-43.1 MozillaThunderbird-translations-other-45.2-43.1 References: https://www.suse.com/security/cve/CVE-2016-1952.html https://www.suse.com/security/cve/CVE-2016-1953.html https://www.suse.com/security/cve/CVE-2016-1954.html https://www.suse.com/security/cve/CVE-2016-1955.html https://www.suse.com/security/cve/CVE-2016-1956.html https://www.suse.com/security/cve/CVE-2016-1957.html https://www.suse.com/security/cve/CVE-2016-1960.html https://www.suse.com/security/cve/CVE-2016-1961.html https://www.suse.com/security/cve/CVE-2016-1964.html https://www.suse.com/security/cve/CVE-2016-1974.html https://www.suse.com/security/cve/CVE-2016-1977.html https://www.suse.com/security/cve/CVE-2016-2790.html https://www.suse.com/security/cve/CVE-2016-2791.html https://www.suse.com/security/cve/CVE-2016-2792.html https://www.suse.com/security/cve/CVE-2016-2793.html https://www.suse.com/security/cve/CVE-2016-2794.html https://www.suse.com/security/cve/CVE-2016-2795.html https://www.suse.com/security/cve/CVE-2016-2796.html https://www.suse.com/security/cve/CVE-2016-2797.html https://www.suse.com/security/cve/CVE-2016-2798.html https://www.suse.com/security/cve/CVE-2016-2799.html https://www.suse.com/security/cve/CVE-2016-2800.html https://www.suse.com/security/cve/CVE-2016-2801.html https://www.suse.com/security/cve/CVE-2016-2802.html https://www.suse.com/security/cve/CVE-2016-2806.html https://www.suse.com/security/cve/CVE-2016-2807.html https://www.suse.com/security/cve/CVE-2016-2815.html https://www.suse.com/security/cve/CVE-2016-2818.html https://bugzilla.suse.com/969894 https://bugzilla.suse.com/977333 https://bugzilla.suse.com/977375 https://bugzilla.suse.com/977376 https://bugzilla.suse.com/983549 https://bugzilla.suse.com/984126 https://bugzilla.suse.com/984637 https://bugzilla.suse.com/986162 . The latest Mozilla Thunderbird release tackles several significant security issues, providing crucial patches for users on openSUSE.. Mozilla Thunderbird, openSUSE updates, security patches. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.