Mageia 2022-0452: thunderbird security update
Summary
Quoting from an HTML email with certain tags will trigger network requests
and load remote content, regardless of a configuration to block remote
content. (CVE-2022-45414)
References
- https://bugs.mageia.org/show_bug.cgi?id=31210
- https://www.thunderbird.net/en-US/thunderbird/102.5.1/releasenotes/
- https://www.mozilla.org/en-US/security/advisories/mfsa2022-50/
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-45414
Resolution
MGASA-2022-0452 - Updated thunderbird packages fix security vulnerability
SRPMS
- 8/core/thunderbird-102.5.1-1.mga8
- 8/core/thunderbird-l10n-102.5.1-1.mga8