From 623ee73d661e5ed8475cb264511f683407d87365 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Sun, 12 Apr 2020 03:41:30 +0100 Subject: gentoo Easter resync : 12.04.2020 --- metadata/glsa/glsa-202003-10.xml | 106 +++++++++++++++++++++++++++++++++++++++ 1 file changed, 106 insertions(+) create mode 100644 metadata/glsa/glsa-202003-10.xml (limited to 'metadata/glsa/glsa-202003-10.xml') diff --git a/metadata/glsa/glsa-202003-10.xml b/metadata/glsa/glsa-202003-10.xml new file mode 100644 index 000000000000..f14245582c42 --- /dev/null +++ b/metadata/glsa/glsa-202003-10.xml @@ -0,0 +1,106 @@ + + + + Mozilla Thunderbird: Multiple vulnerabilities + Multiple vulnerabilities have been found in Mozilla Thunderbird, + the worst of which could result in the arbitrary execution of code. + + thunderbird + 2020-03-14 + 2020-03-14 + 698516 + 702638 + 709350 + 712518 + remote + + + 68.6.0 + 68.6.0 + + + 68.6.0 + 68.6.0 + + + +

Mozilla Thunderbird is a popular open-source email client from the + Mozilla project. +

+
+ +

Multiple vulnerabilities have been discovered in Mozilla Thunderbird. + Please review the CVE identifiers referenced below for details. +

+
+ +

A remote attacker may be able to execute arbitrary code, cause a Denial + of Service condition, obtain sensitive information, or conduct Cross-Site + Request Forgery (CSRF). +

+
+ +

There is no known workaround at this time.

+
+ +

All Mozilla Thunderbird users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=mail-client/thunderbird-68.6.0" + + +

All Mozilla Thunderbird binary users should upgrade to the latest + version: +

+ + + # emerge --sync + # emerge --ask --oneshot --verbose + ">=mail-client/thunderbird-bin-68.6.0" + + +
+ + + MFSA-2019-35 + + + MFSA-2019-37 + + + MFSA-2020-07 + + + MFSA-2020-10 + + CVE-2019-11745 + CVE-2019-11757 + CVE-2019-11759 + CVE-2019-11760 + CVE-2019-11761 + CVE-2019-11762 + CVE-2019-11763 + CVE-2019-11764 + CVE-2019-17005 + CVE-2019-17008 + CVE-2019-17010 + CVE-2019-17011 + CVE-2019-17012 + CVE-2019-20503 + CVE-2020-6792 + CVE-2020-6793 + CVE-2020-6794 + CVE-2020-6795 + CVE-2020-6798 + CVE-2020-6800 + CVE-2020-6805 + CVE-2020-6806 + CVE-2020-6807 + CVE-2020-6811 + CVE-2020-6812 + CVE-2020-6814 + + BlueKnight + BlueKnight +
-- cgit v1.2.3