From dc7cbdfa65fd814b3b9aa3c56257da201109e807 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Fri, 5 Apr 2019 21:17:31 +0100 Subject: gentoo resync : 05.04.2019 --- metadata/glsa/glsa-201904-07.xml | 109 +++++++++++++++++++++++++++++++++++++++ 1 file changed, 109 insertions(+) create mode 100644 metadata/glsa/glsa-201904-07.xml (limited to 'metadata/glsa/glsa-201904-07.xml') diff --git a/metadata/glsa/glsa-201904-07.xml b/metadata/glsa/glsa-201904-07.xml new file mode 100644 index 000000000000..0cddfaf2c8dd --- /dev/null +++ b/metadata/glsa/glsa-201904-07.xml @@ -0,0 +1,109 @@ + + + + Mozilla Thunderbird and Firefox: Multiple vulnerabilities + Multiple vulnerabilities have been found in Mozilla Thunderbird and + Firefox, the worst of which could lead to the execution of arbitrary code. + + thunderbird,firefox,mozilla + 2019-04-02 + 2019-04-02 + 676954 + 678072 + 681834 + 681836 + remote + + + 60.6.1 + 60.6.1 + + + 60.6.1 + 60.6.1 + + + 60.6.1 + 60.6.1 + + + 60.6.1 + 60.6.1 + + + +

Mozilla Thunderbird is a popular open-source email client from the + Mozilla project. + Mozilla Firefox is a popular open-source web browser from the Mozilla + Project. +

+
+ +

Multiple vulnerabilities have been discovered in Mozilla Thunderbird and + Firefox. Please review the referenced Mozilla Foundation Security + Advisories and CVE identifiers below for details. +

+
+ +

Please review the referenced Mozilla Foundation Security Advisories and + CVE identifiers below for details. +

+
+ +

There is no known workaround at this time.

+
+ +

All Thunderbird users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=mail-client/thunderbird-60.6.1" + + +

All Thunderbird bin users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose + ">=mail-client/thunderbird-bin-60.6.1" + + +

All Firefox users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=www-client/firefox-60.6.1" + + +

All Firefox bin users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=www-client/firefox-bin-60.6.1" + +
+ + CVE-2016-5824 + CVE-2018-18335 + CVE-2018-18356 + CVE-2018-18500 + CVE-2018-18501 + CVE-2018-18505 + CVE-2018-18506 + CVE-2018-18509 + CVE-2018-18512 + CVE-2018-18513 + CVE-2019-5785 + CVE-2019-9788 + CVE-2019-9790 + CVE-2019-9791 + CVE-2019-9792 + CVE-2019-9793 + CVE-2019-9795 + CVE-2019-9796 + CVE-2019-9810 + CVE-2019-9813 + + BlueKnight + b-man +
-- cgit v1.2.3