![]() |
Startseite ▼ Bookkeeping
Online ▼ Sicherheits
Überprüfungs ▼
Verwaltetes
DNS ▼
Info
Bestellen/Erneuern
FAQ
AUP
Dynamic DNS Clients
Domaine konfigurieren Dyanmic DNS Update Password Netzwerk
Überwachung ▼
Enterprise
Erweiterte
Standard
Gratis Test
FAQ
Preis/Funktionszusammenfassung
Bestellen
Beispiele
Konfigurieren/Status Alarm Profile | ||
Test Kennung: | 1.3.6.1.4.1.25623.1.1.18.2.2025.0849.1 |
Kategorie: | openSUSE Local Security Checks |
Titel: | openSUSE Security Advisory (SUSE-SU-2025:0849-1) |
Zusammenfassung: | The remote host is missing an update for the 'MozillaThunderbird' package(s) announced via the SUSE-SU-2025:0849-1 advisory. |
Beschreibung: | Summary: The remote host is missing an update for the 'MozillaThunderbird' package(s) announced via the SUSE-SU-2025:0849-1 advisory. Vulnerability Insight: This update for MozillaThunderbird fixes the following issues: Updated to Mozilla Thunderbird 128.8 MFSA 2025-18 (bsc#1237683): - CVE-2024-43097: Overflow when growing an SkRegion's RunArray - CVE-2025-1930: AudioIPC StreamData could trigger a use-after-free in the Browser process - CVE-2025-1931: Use-after-free in WebTransportChild - CVE-2025-1932: Inconsistent comparator in XSLT sorting led to out-of-bounds access - CVE-2025-1933: JIT corruption of WASM i32 return values on 64-bit CPUs - CVE-2025-1934: Unexpected GC during RegExp bailout processing - CVE-2025-1935: Clickjacking the registerProtocolHandler info-bar - CVE-2025-1936: Adding %00 and a fake extension to a jar: URL changed the interpretation of the contents - CVE-2025-1937: Memory safety bugs fixed in Firefox 136, Thunderbird 136, Firefox ESR 115.21, Firefox ESR 128.8, and Thunderbird 128.8 - CVE-2025-1938: Memory safety bugs fixed in Firefox 136, Thunderbird 136, Firefox ESR 128.8, and Thunderbird 128.8 - CVE-2025-26695: Downloading of OpenPGP keys from WKD used incorrect padding - CVE-2025-26696: Crafted email message incorrectly shown as being encrypted Other fixes: * Opening an .EML file in profiles with many folders could take a long time. * Users with many folders experienced poor performance when resizing message panes. *'Replace' button in compose window was overwritten when the window was narrow. * Export to mobile did not work when 'Use default server' was selected. * 'Save Link As' was not working in feed web content. Affected Software/OS: 'MozillaThunderbird' package(s) on openSUSE Leap 15.6. Solution: Please install the updated package(s). CVSS Score: 5.0 CVSS Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N |
Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2024-43097 Common Vulnerability Exposure (CVE) ID: CVE-2025-1930 Common Vulnerability Exposure (CVE) ID: CVE-2025-1931 Common Vulnerability Exposure (CVE) ID: CVE-2025-1932 Common Vulnerability Exposure (CVE) ID: CVE-2025-1933 Common Vulnerability Exposure (CVE) ID: CVE-2025-1934 Common Vulnerability Exposure (CVE) ID: CVE-2025-1935 Common Vulnerability Exposure (CVE) ID: CVE-2025-1936 Common Vulnerability Exposure (CVE) ID: CVE-2025-1937 Common Vulnerability Exposure (CVE) ID: CVE-2025-1938 Common Vulnerability Exposure (CVE) ID: CVE-2025-26695 Common Vulnerability Exposure (CVE) ID: CVE-2025-26696 |
Copyright | Copyright (C) 2025 Greenbone AG |
Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |