Security update for MozillaThunderbird
This update for MozillaThunderbird fixes the following issues:
Mozilla Thunderbird 68.9.0 (bsc#1172402)
- CVE-2020-12405: Fixed a use-after-free in SharedWorkerService.
- CVE-2020-12406: Fixed a JavaScript Type confusion with NativeTypes.
- CVE-2020-12410: Fixed multiple memory safety issues
- CVE-2020-12398: Fixed a potential information leak due to security downgrade
with IMAP STARTTLS
- Use a symbolic icon from branding internals
This update was imported from the SUSE:SLE-15:Update update project.
-
Submitted by
Martin Sirringhaus (MSirringhaus)
Fixed bugs
bnc#1172402
VUL-0: MozillaFirefox/MozillaThunderbird: 68.9ESR / 77 release - MFSA 2020-20 / 2020-21