Deutsch   English   Fran├žais   Italiano  
<GaeSJ-d4Qe-5@gated-at.bofh.it>

View for Bookmarking (what is this?)
Look up another Usenet article

Path: ...!npeer.as286.net!npeer-ng0.as286.net!bolzen.all.de!fu-berlin.de!bofh.it!news.nic.it!robomod
From: Moritz Muehlenhoff <jmm@debian.org>
Newsgroups: linux.debian.announce.security
Subject: [SECURITY] [DSA 5375-1] thunderbird security update
Date: Fri, 17 Mar 2023 10:50:01 +0100
Message-ID: <GaeSJ-d4Qe-5@gated-at.bofh.it>
X-Original-To: debian-security-announce@lists.debian.org
X-Mailbox-Line: From debian-security-announce-request@lists.debian.org  Fri Mar 17 09:44:00 2023
Old-Return-Path: <jmm@seger.debian.org>
X-Amavis-Spam-Status: No, score=-113.491 tagged_above=-10000 required=5.3
	tests=[BAYES_00=-2, DIGITS_LETTERS=1, DKIMWL_WL_HIGH=-0.001,
	DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1,
	DKIM_VALID_EF=-0.1, FVGT_m_MULTI_ODD=0.02, LDO_WHITELIST=-5,
	PGPSIGNATURE=-5, RCVD_IN_DNSWL_MED=-2.3,
	USER_IN_DKIM_WELCOMELIST=-0.01, USER_IN_DKIM_WHITELIST=-100]
	autolearn=ham autolearn_force=no
Old-Dkim-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org;
	s=smtpauto.seger; h=Content-Type:MIME-Version:Message-ID:Subject:To:From:Date
	:Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description:
	In-Reply-To:References; bh=vuAs6RloRhcv6I8LdYY3Fc1nWHRiGPtb+Bh7WU4FeLE=; b=Gn
	fz2OpeEpWbMMEz5xTEN5Hjas1XuZ5uZTFXBJVkKX+mF8ubEKUAYOE5HQI4MLuPI8MWZKUZHIJ+Y/V
	8hT7VwlBr2FFj5W5XxBhNJQHLASAblZQ0/owdsrj0ebYK1E8tMN4xkJ3QdEWHnzTOFvpP0PnhqM6x
	aukpFpC/b53b7BLIHnG2SdLSnHJhHsPLrZLDbk3qHJ8BkiUD/Zx7b17z0RTZbyFm6wkHBKXfk6h+i
	lUB8aWh0wny7YM64kERT37TsTIZvKHGvSESwRPYXFTP3vvpbUv1gpIa7ZGaDbqdJKbjucA9WhcQZ5
	CfW2LdtcH0kxK+5yvXPTW3KtycxQszMg==;
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
X-Debian: PGP check passed for security officers
Priority: urgent
Reply-To: debian-security-announce-request@lists.debian.org
X-Mailing-List: <debian-security-announce@lists.debian.org> archive/latest/4275
List-ID: <debian-security-announce.lists.debian.org>
List-URL: <http://lists.debian.org/debian-security-announce/>
List-Archive: https://lists.debian.org/msgid-search/ZBQ2SQ8NjlSYabYU@seger.debian.org
Approved: robomod@news.nic.it
Lines: 47
Organization: linux.* mail to news gateway
Sender: robomod@news.nic.it
X-Original-Date: Fri, 17 Mar 2023 09:43:37 +0000
X-Original-Message-ID: <ZBQ2SQ8NjlSYabYU@seger.debian.org>
Bytes: 4516

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-5375-1                   security@debian.org
https://www.debian.org/security/                       Moritz Muehlenhoff
March 17, 2023                        https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : thunderbird
CVE ID         : CVE-2023-25751 CVE-2023-25752 CVE-2023-28162 CVE-2023-28164 
                 CVE-2023-28176

Multiple security issues were discovered in Thunderbird, which could
result in denial of service, the execution of arbitrary code or
spoofing.

For the stable distribution (bullseye), these problems have been fixed in
version 1:102.9.0-1~deb11u1.

We recommend that you upgrade your thunderbird packages.

For the detailed security status of thunderbird please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/thunderbird

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org
-----BEGIN PGP SIGNATURE-----
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=Mv0t
-----END PGP SIGNATURE-----