Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 645812

Summary: <mail-client/thunderbird{,-bin}-52.5.6: Security vulnerabilities: version bump
Product: Gentoo Linux Reporter: Manfred Knick <Manfred.Knick>
Component: Current packagesAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: normal CC: holger
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: https://www.mozilla.org/en-US/security/advisories/mfsa2018-04/
Whiteboard: B2 [glsa+]
Package list:
Runtime testing required: ---

Description Manfred Knick 2018-01-26 15:43:28 UTC
https://www.mozilla.org/en-US/security/advisories/mfsa2018-04/

Security vulnerabilities fixed in Thunderbird 52.6

Announced
    January 25, 2018
Impact
    critical
Products
    Thunderbird
Fixed in
        Thunderbird 52.6

In general, these flaws cannot be exploited through email in the Thunderbird product because scripting is disabled when reading mail, but are potentially risks in browser or browser-like contexts.
Comment 1 Frank Krömmelbein 2018-02-16 22:56:56 UTC
I think the software is now long enough in the tree, so could we please start the stabilization process? 
The bin package has already stable keywords.
Comment 2 GLSAMaker/CVETool Bot gentoo-dev 2018-03-28 18:25:16 UTC
This issue was resolved and addressed in
 GLSA 201803-14 at https://security.gentoo.org/glsa/201803-14
by GLSA coordinator Aaron Bauman (b-man).