Lucene search

K
altlinuxHttps://packages.altlinux.org/en/sisyphus/security/DBC52D73079F30FC8FA1FCF0BE44CEBC
HistoryAug 18, 2020 - 12:00 a.m.

Security fix for the ALT Linux 10 package thunderbird version 78.1.1-alt1

2020-08-1800:00:00
https://packages.altlinux.org/en/sisyphus/security/
packages.altlinux.org
9

0.006 Low

EPSS

Percentile

78.3%

Aug. 18, 2020 Aleksei Nikiforov 78.1.1-alt1

- Updated to upstream version 78.1.1 (thx to cas@ and sbolshakov@).
- Fixes:
  + CVE-2020-15652 Potential leak of redirect targets when loading scripts in a worker
  + CVE-2020-6514 WebRTC data channel leaks internal address to peer
  + CVE-2020-15655 Extension APIs could be used to bypass Same-Origin Policy
  + CVE-2020-15653 Bypassing iframe sandbox when allowing popups
  + CVE-2020-6463 Use-after-free in ANGLE gl::Texture::onUnbindAsSamplerTexture
  + CVE-2020-15656 Type confusion for special arguments in IonMonkey
  + CVE-2020-15658 Overriding file type when saving to disk
  + CVE-2020-15657 DLL hijacking due to incorrect loading path
  + CVE-2020-15654 Custom cursor can overlay user interface
  + CVE-2020-15659 Memory safety bugs fixed in Thunderbird 78.1