thunderbird 1:60.8.0-1 source package in Debian

Changelog

thunderbird (1:60.8.0-1) unstable; urgency=medium

  * [49f4e91] New upstream version 60.8.0
    Fixed CVE issues in upstream version 60.8.0 (MFSA 2019-23)
    CVE-2019-9811: Sandbox escape via installation of malicious language pack
    CVE-2019-11711: Script injection within domain through inner window reuse
    CVE-2019-11712: Cross-origin POST requests can be made with NPAPI plugins
                    by following 308 redirects
    CVE-2019-11713: Use-after-free with HTTP/2 cached stream
    CVE-2019-11729: Empty or malformed p256-ECDH public keys may trigger a
                    segmentation fault
    CVE-2019-11715: HTML parsing error can contribute to content XSS
    CVE-2019-11717: Caret character improperly escaped in origins
    CVE-2019-11719: Out-of-bounds read when importing curve25519 private key
    CVE-2019-11730: Same-origin policy treats all files in a directory as
                    having the same-origin
    CVE-2019-11709: Memory safety bugs fixed in Firefox 68, Firefox ESR 60.8,
                    and Thunderbird 60.8

 -- Carsten Schoenert <email address hidden>  Tue, 09 Jul 2019 22:09:04 +0200

Upload details

Uploaded by:
tijuca
Uploaded to:
Sid
Original maintainer:
tijuca
Architectures:
any all
Section:
misc
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
thunderbird_60.8.0-1.dsc 11.9 KiB e714472fd5e638cbe112035d8bb893a7645852bca42e9134ff65f2d6882a2cfa
thunderbird_60.8.0.orig-lightning-l10n.tar.xz 933.1 KiB 8a1651cf1e5d9cc4a66224715493ee18bbe24e1bae349a70f4d702c2d9d961a9
thunderbird_60.8.0.orig-thunderbird-l10n.tar.xz 8.8 MiB c78a59c05d0f3ff594fb50ad1e9e6083653a59440f15b641408e4959f6a220b3
thunderbird_60.8.0.orig.tar.xz 273.6 MiB c2005a959525b55f54e48f047a54bd23781ea5a0bd5e72d76786f537c12a9097
thunderbird_60.8.0-1.debian.tar.xz 542.0 KiB aebb8ec6411249695d831751b826875639e4b98f9d2359f464ee30d0b4a7a6e3

No changes file available.

Binary packages built by this source