QID 241919
Date Published: 2023-08-09
QID 241919: Red Hat Update for thunderbird (RHSA-2023:4497)
Mozilla thunderbird is a standalone mail and newsgroup client...Security Fix(es):
- mozilla: offscreen canvas could have bypassed cross-origin restrictions (cve-2023-4045).
Mozilla: incorrect value used during wasm compilation (cve-2023-4046).
Mozilla: potential permissions request bypass via clickjacking (cve-2023-4047).
Mozilla: crash in domparser due to out-of-memory conditions (cve-2023-4048).
Mozilla: fix potential race conditions when releasing platform objects (cve-2023-4049).
Mozilla: stack buffer overflow in storagemanager (cve-2023-4050).
Mozilla: memory safety bugs fixed in firefox 116, firefox esr 115.1, firefox esr 102.14, thunderbird 115.1, and thunderbird 102.14 (cve-2023-4056).
Mozilla: memory safety bugs fixed in firefox esr 115.1, and thunderbird 115.1 (cve-2023-4057).
Thunderbird: file extension spoofing using the text direction override character (cve-2023-3417).
Mozilla: cookie jar overflow caused unexpected cookie jar state (cve-2023-4055).
- Red Hat enterprise linux for x86_64 8 x86_64.
Red hat enterprise linux for x86_64 - extended update support 8.8 x86_64.
Red hat enterprise linux for ibm z systems 8 s390x.
Red hat enterprise linux for ibm z systems - extended update support 8.8 s390x.
Red hat enterprise linux for power, little endian 8 ppc64le.
Red hat enterprise linux for power, little endian - extended update support 8.8 ppc64le.
Red hat enterprise linux server - tus 8.8 x86_64.
Red hat enterprise linux for arm 64 8 aarch64.
Red hat enterprise linux for arm 64 - extended update support 8.8 aarch64.
Red hat enterprise linux server for power le - update services for sap solutions 8.8 ppc64le.
Red hat enterprise linux for x86_64 - update services for sap solutions 8.8 x86_64.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Red Hat security advisory RHSA-2023:4497 for updates and patch information.
Vendor References
- RHSA-2023:4497 -
access.redhat.com/errata/RHSA-2023:4497
CVEs related to QID 241919
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| RHSA-2023:4497 | Red Hat Enterprise Linux |
|