Advisories ยป MGASA-2021-0355

Updated thunderbird packages fix security vulnerabilities

Publication date: 16 Jul 2021
Modification date: 16 Jul 2021
Type: security
Affected Mageia releases : 8
CVE: CVE-2021-29969 , CVE-2021-29970 , CVE-2021-29976 , CVE-2021-30547

Description

IMAP server responses sent by a MITM prior to STARTTLS could be processed
(CVE-2021-29969).

Use-after-free in accessibility features of a document (CVE-2021-29970).

Out of bounds write in ANGLE (CVE-2021-30547).

Memory safety bugs fixed in Thunderbird 78.12 (CVE-2021-29976).
                

References

SRPMS

8/core