Advisories ยป MGASA-2022-0315

Updated thunderbird packages fix security vulnerability

Publication date: 29 Aug 2022
Modification date: 29 Aug 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2022-38472 , CVE-2022-38473 , CVE-2022-38478

Description

Address bar spoofing via XSLT error handling (CVE-2022-38472)
Cross-origin XSLT Documents would have inherited the parent's permissions
(CVE-2022-38473)
Memory safety bugs. (CVE-2022-38478)
                

References

SRPMS

8/core