Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-1935

Опубликовано: 22 апр. 2024
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2024-1935: thunderbird security update (LOW)

[115.10.0-2.0.1]

  • Replaced thunderbird-redhat-default-prefs.js with thunderbird-oracle-default-prefs.js
  • Enabled aarch64 build

[115.10.0-2]

  • Update to 115.10.0 build2

[115.10.0-1]

  • Update to 115.10.0 build1
  • Revert expat CVE-2023-52425 fix

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

thunderbird

115.10.0-2.0.1.el7_9

Oracle Linux x86_64

thunderbird

115.10.0-2.0.1.el7_9

Связанные CVE

Связанные уязвимости

CVSS3: 3.7
ubuntu
около 1 года назад

There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server could abuse this to create an Out of Memory condition in the browser. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.

CVSS3: 3.7
redhat
около 1 года назад

There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server could abuse this to create an Out of Memory condition in the browser. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.

CVSS3: 3.7
nvd
около 1 года назад

There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server could abuse this to create an Out of Memory condition in the browser. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.

CVSS3: 3.7
debian
около 1 года назад

There was no limit to the number of HTTP/2 CONTINUATION frames that wo ...

rocky
около 1 года назад

Low: thunderbird security update