Description:
Mozilla Thunderbird is a standalone mail and newsgroup client.
Security Fix(es):
* EMBARGOED Thunderbird: 115.14/128.1 ()
* mozilla: Fullscreen notification dialog can be obscured by document content (CVE-2024-7518)
* mozilla: Out of bounds memory access in graphics shared memory handling (CVE-2024-7519)
* mozilla: Type confusion in WebAssembly (CVE-2024-7520)
* mozilla: Incomplete WebAssembly exception handing (CVE-2024-7521)
* mozilla: Out of bounds read in editor component (CVE-2024-7522)
* mozilla: Missing permission check when creating a StreamFilter (CVE-2024-7525)
* mozilla: Uninitialized memory used by WebGL (CVE-2024-7526)
* mozilla: Use-after-free in JavaScript garbage collection (CVE-2024-7527)
* mozilla: Use-after-free in IndexedDB (CVE-2024-7528)
* mozilla: Document content could partially obscure security prompts (CVE-2024-7529)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture |
Package |
Checksum |
aarch64 |
thunderbird-115.14.0-1.el9_4.alma.1.aarch64.rpm |
41af707c5497b9bc7e8bf04f3925584d82e0fe6c07bf646d77e3e3a6ff607365 |
ppc64le |
thunderbird-115.14.0-1.el9_4.alma.1.ppc64le.rpm |
9af601820c80666701e9d0e566b60a09822e86f4a65c580fce92cca54fdc4c8a |
s390x |
thunderbird-115.14.0-1.el9_4.alma.1.s390x.rpm |
6baeec1a8b9a9b08e4353f6a590792e572b7d8190d631c206f1164aae2a8010e |
x86_64 |
thunderbird-115.14.0-1.el9_4.alma.1.x86_64.rpm |
9d4bb6ff0b6adf4078d0dbd348bfd998a1bd2b1b3b139c0b74b9629855cb5411 |