Package thunderbird: Information
Default inline alert: Version in the repository: 115.9.0-alt1
Binary package: thunderbird
Version: 91.10.0-alt1
Architecture: x86_64
Build time: Jun 4, 2022, 01:29 AM in the task #301216
Source package: thunderbird
Category: Networking/Mail
Report package bugDownload: thunderbird-91.10.0-alt1.x86_64.rpm
Home page: https://www.thunderbird.net
License: MPL-2.0
Summary: Thunderbird is Mozilla's e-mail client
Description:
Thunderbird is Mozilla's next generation e-mail client. Thunderbird makes emailing safer, faster and easier than ever before and can also scale to meet the most sophisticated organizational needs. The package contains Lightning - an integrated calendar for Thunderbird.
Maintainer: Andrey Cherepanov
List of contributors:
Pavel Vasenkov
Andrey Cherepanov
Aleksei Nikiforov
Gleb Fotengauer-Malinovskiy
Paul Wolneykien
Anton Farygin
Vladimir Didenko
Alexey Gladkov
Alexey Morozov
Pavel Vasenkov
Andrey Cherepanov
Aleksei Nikiforov
Gleb Fotengauer-Malinovskiy
Paul Wolneykien
Anton Farygin
Vladimir Didenko
Alexey Gladkov
Alexey Morozov
Last changed
June 3, 2022 Pavel Vasenkov 91.10.0-alt1
- New version. - Security fixes: + CVE-2022-31736 Cross-Origin resource's length leaked + CVE-2022-31737 Heap buffer overflow in WebGL + CVE-2022-31738 Browser window spoof using fullscreen mode + CVE-2022-31739 Attacker-influenced path traversal when saving downloaded files + CVE-2022-31740 Register allocation problem in WASM on arm64 + CVE-2022-31741 Uninitialized variable leads to invalid memory read + CVE-2022-1834 Braille space character caused incorrect sender email to be shown for a digitally signed email + CVE-2022-31742 Querying a WebAuthn token with a large number of allowCredential entries may have leaked cross-origin information + CVE-2022-31747 Memory safety bugs fixed in Thunderbird 91.10
May 21, 2022 Pavel Vasenkov 91.9.1-alt1
- New version. - Security fixes: + CVE-2022-1802 Prototype pollution in Top-Level Await implementation + CVE-2022-1529 Untrusted input used in JavaScript object indexing, leading to prototype pollution
May 4, 2022 Pavel Vasenkov 91.9.0-alt1
- New version. - Security fixes: + CVE-2022-1520 Incorrect security status shown after viewing an attached email + CVE-2022-29914 Fullscreen notification bypass using popups + CVE-2022-29909 Bypassing permission prompt in nested browsing contexts + CVE-2022-29916 Leaking browser history with CSS variables + CVE-2022-29911 iframe sandbox bypass + CVE-2022-29912 Reader mode bypassed SameSite cookies + CVE-2022-29913 Speech Synthesis feature not properly disabled + CVE-2022-29917 Memory safety bugs fixed in Thunderbird 91.9