Package thunderbird: Information

  • Default inline alert: Version in the repository: 115.9.0-alt1

Source package: thunderbird
Version: 60.3.0-alt1
Latest version according to Repology
Build time:  Nov 21, 2018, 02:04 PM in the task #210777
Category: Networking/Mail
Report package bug
License: MPL/GPL
Summary: Thunderbird is Mozilla's e-mail client
Description: 
Thunderbird is Mozilla's next generation e-mail client.
Thunderbird makes emailing safer, faster and easier than
ever before and can also scale to meet the most sophisticated
organizational needs.
The package contains Lightning - an integrated calendar for Thunderbird.

List of rpms provided by this srpm:
rpm-build-thunderbird (noarch)
thunderbird (x86_64, i586, aarch64)
thunderbird-enigmail (x86_64, i586, aarch64)

Maintainer: Andrey Cherepanov



    1. libwireless-devel
    2. alternatives
    3. libevent-devel
    4. libffi-devel
    5. autoconf_2.13
    6. autoconf_2.13
    7. libsqlite3-devel
    8. libstartup-notification-devel
    9. libstdc++-devel
    10. lld-devel
    11. llvm6.0-devel
    12. makedepend
    13. libfreetype-devel
    14. libnotify-devel
    15. libnspr-devel
    16. libnss-devel
    17. libnss-devel-static
    18. mozilla-common-devel
    19. /proc
    20. mozldap-devel
    21. browser-plugins-npapi-devel
    22. bzlib-devel
    23. rust
    24. rust-cargo
    25. libGL-devel
    26. chrpath
    27. libIDL-devel
    28. doxygen
    29. libopus-devel
    30. clang6.0
    31. clang6.0-devel
    32. python-module-distribute
    33. libgio-devel
    34. rpm-build-mozilla.org
    35. gst-plugins1.0-devel
    36. gstreamer1.0-devel
    37. libpixman-devel
    38. fontconfig-devel
    39. libX11-devel
    40. libcairo-devel
    41. libproxy-devel
    42. python-modules-compiler
    43. python-modules-json
    44. python-modules-logging
    45. python-modules-sqlite3
    46. libXScrnSaver-devel
    47. libXcomposite-devel
    48. libXcursor-devel
    49. libXdamage-devel
    50. libXext-devel
    51. libpulseaudio-devel
    52. gcc-c++
    53. imake
    54. libXft-devel
    55. libXi-devel
    56. libgtk+2-devel
    57. unzip
    58. libXt-devel
    59. libcurl-devel
    60. libalsa-devel
    61. yasm
    62. xorg-cf-files
    63. zip
    64. libgtk+3-devel
    65. zlib-devel
    66. libvpx-devel
    67. libjpeg-devel
    68. libhunspell-devel

Last changed


Nov. 2, 2018 Andrey Cherepanov 60.3.0-alt1
- New version (60.3.0).
- Fixes:
  + CVE-2018-12391 HTTP Live Stream audio data is accessible cross-origin
  + CVE-2018-12392 Crash with nested event loops
  + CVE-2018-12393 Integer overflow during Unicode conversion while loading JavaScript
  + CVE-2018-12389 Memory safety bugs fixed in Firefox ESR 60.3 and Thunderbird 60.3
  + CVE-2018-12390 Memory safety bugs fixed in Firefox 63, Firefox ESR 60.3, and Thunderbird 60.3
Oct. 15, 2018 Andrey Cherepanov 60.2.1-alt1
- New version (60.2.1).
- Fixes:
  + CVE-2018-12377 Use-after-free in refresh driver timers
  + CVE-2018-12378 Use-after-free in IndexedDB
  + CVE-2018-12379 Out-of-bounds write with malicious MAR file
  + CVE-2017-16541 Proxy bypass using automount and autofs
  + CVE-2018-12376 Memory safety bugs fixed in Firefox 62 and Firefox ESR 60.2
  + CVE-2018-12385 Crash in TransportSecurityInfo due to cached data
  + CVE-2018-12383 Setting a master password post-Firefox 58 does not delete unencrypted previously stored passwords
Aug. 13, 2018 Andrey Cherepanov 60.0-alt1
- New version (60.0).
- Enigmail 2.0.8.
- Fixes:
  + CVE-2018-12359 Buffer overflow using computed size of canvas element
  + CVE-2018-12360 Use-after-free when using focus()
  + CVE-2018-12361 Integer overflow in SwizzleData
  + CVE-2018-12362 Integer overflow in SSSE3 scaler
  + CVE-2018-5156 Media recorder segmentation fault when track type is changed during capture
  + CVE-2018-12363 Use-after-free when appending DOM nodes
  + CVE-2018-12364 CSRF attacks through 307 redirects and NPAPI plugins
  + CVE-2018-12365 Compromised IPC child process can list local filenames
  + CVE-2018-12371 Integer overflow in Skia library during edge builder allocation
  + CVE-2018-12366 Invalid data handling during QCMS transformations
  + CVE-2018-12367 Timing attack mitigation of PerformanceNavigationTiming
  + CVE-2018-12368 No warning when opening executable SettingContent-ms files
  + CVE-2018-5187 Memory safety bugs fixed in Firefox 61, Firefox ESR 60.1, and Thunderbird 60
  + CVE-2018-5188 Memory safety bugs fixed in Firefox 61, Firefox ESR 60.1, Firefox ESR 52.9, and Thunderbird 60