File _patchinfo of Package patchinfo.10362
<patchinfo incident="10362">
<issue tracker="bnc" id="1125330">VUL-0: MozillaFirefox: 60.5.1 release (2019-04)</issue>
<issue tracker="cve" id="2018-18356"/>
<issue tracker="cve" id="2018-18509"/>
<issue tracker="cve" id="2018-18335"/>
<issue tracker="cve" id="2019-5785"/>
<category>security</category>
<rating>important</rating>
<packager>AndreasStieger</packager>
<description>This update for MozillaThunderbird to version 60.5.1 fixes the following issues:
Security issues fixed (MFSA 2019-06 bsc#1125330):
- CVE-2018-18335: Fixed a Buffer overflow in Skia by default deactivating Canvas 2D.
This issue does not affect Linuc distributions.
- CVE-2018-18509: Fixed a flaw which during verification of certain S/MIME signatures
showing mistakenly that emails bring a valid sugnature.
- CVE-2018-18356: Fixed a Use-after-free in Skia.
- CVE-2019-5785: Fixed an Integer overflow in Skia.
</description>
<summary>Security update for MozillaThunderbird</summary>
</patchinfo>