Advisories ยป MGASA-2023-0172

Updated thunderbird packages fix security vulnerability

Publication date: 16 May 2023
Modification date: 16 May 2023
Type: security
Affected Mageia releases : 8
CVE: CVE-2023-32205 , CVE-2023-32206 , CVE-2023-32206 , CVE-2023-32211 , CVE-2023-32212 , CVE-2023-32213 , CVE-2023-32215

Description

Browser prompts could have been obscured by popups. (CVE-2023-32205)
Crash in RLBox Expat driver. (CVE-2023-32206)
Potential permissions request bypass via clickjacking. (CVE-2023-32207)
Content process crash due to invalid wasm code. (CVE-2023-32211)
Potential spoof due to obscured address bar. (CVE-2023-32212)
Potential memory corruption in FileReader::DoReadData(). (CVE-2023-32213)
Memory safety bugs fixed in Thunderbird 102.11. (CVE-2023-32215)
                

References

SRPMS

8/core