Mageia 2020-0300: thunderbird security update
Summary
If Thunderbird is configured to use STARTTLS for an IMAP server, and the server
sends a PREAUTH response, then Thunderbird will continue with an unencrypted
connection, causing email data to be sent without protection (CVE-2020-12398).
When browsing a malicious page, a race condition in our SharedWorkerService
could occur and lead to a potentially exploitable crash due to a use-after-free
(CVE-2020-12405).
Mozilla developer Iain Ireland discovered a missing type check during unboxed
objects removal, resulting in a crash due to type confusion with NativeTypes. We
presume that with enough effort that it could be exploited to run arbitrary code
(CVE-2020-12406).
Mozilla developers Tom Tung and Karl Tomlinson reported memory safety bugs
present in Firefox ESR 68.8. Some of these bugs showed evidence of memory
corruption and we presume that with enough effort some of these could have been
exploited to run arbitrary code (CVE-2020-12410).
Manipulating individual parts of a URL object coul...
References
- https://bugs.mageia.org/show_bug.cgi?id=26891
- https://www.mozilla.org/en-US/security/advisories/mfsa2020-22/
- https://www.mozilla.org/en-US/security/advisories/mfsa2020-26/
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12398
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12405
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12406
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12410
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12418
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12419
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12420
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12421
Resolution
MGASA-2020-0300 - Updated thunderbird packages fix security vulnerability
SRPMS
- 7/core/thunderbird-68.10.0-1.mga7
- 7/core/thunderbird-l10n-68.10.0-1.mga7