Package thunderbird: Information

Source package: thunderbird
Version: 148.0-alt0.port
Build time:  Mar 2, 2026, 07:13 PM
Category: Networking/Mail
Report package bug
License: MPL-2.0
Summary: Thunderbird is Mozilla's e-mail client
Description: 
Thunderbird is Mozilla's next generation e-mail client. Thunderbird makes
emailing safer, faster and easier than ever before and can also scale to meet
the most sophisticated organizational needs.

The package contains Lightning - an integrated calendar for Thunderbird.

List of RPM packages built from this SRPM:
thunderbird (loongarch64)
thunderbird-debuginfo (loongarch64)

Maintainer: Ivan A. Melnikov


    1. /dev/shm
    2. /proc
    3. libX11-devel
    4. libXScrnSaver-devel
    5. libXcomposite-devel
    6. libXcursor-devel
    7. libXdamage-devel
    8. libXext-devel
    9. libXft-devel
    10. libXi-devel
    11. libXt-devel
    12. libalsa-devel
    13. alternatives
    14. libaom-devel
    15. autoconf_2.13
    16. autoconf_2.13
    17. binutils
    18. browser-plugins-npapi-devel
    19. bzlib-devel
    20. cbindgen
    21. chrpath
    22. clang
    23. clang-devel
    24. libcairo-devel
    25. libcurl-devel
    26. libdav1d-devel
    27. libdbus-devel
    28. libdbus-glib-devel
    29. libdrm-devel
    30. libevent-devel
    31. libffi-devel
    32. libfreetype-devel
    33. libgio-devel
    34. libgtk+2-devel
    35. libgtk+3-devel
    36. libhunspell-devel
    37. libjpeg-devel
    38. dump_syms
    39. fontconfig-devel
    40. libnotify-devel
    41. libnspr-devel
    42. libnss-devel
    43. gst-plugins-devel
    44. gstreamer-devel
    45. libopus-devel
    46. libpixman-devel
    47. libproxy-devel
    48. libpulseaudio-devel
    49. libGL-devel
    50. libshell
    51. libstartup-notification-devel
    52. libstdc++-devel
    53. python3(pip)
    54. libvpx-devel
    55. python3(setuptools)
    56. python3(sqlite3)
    57. libwireless-devel
    58. libxkbcommon-devel
    59. llvm-devel
    60. python3-base
    61. mozilla-common-devel
    62. nasm
    63. node
    64. rpm-macros-thunderbird
    65. pkgconfig(vpx)
    66. pkgconfig(x11)
    67. pkgconfig(xcomposite)
    68. pkgconfig(xcursor)
    69. pkgconfig(xdamage)
    70. pkgconfig(xext)
    71. pkgconfig(xft)
    72. pkgconfig(xi)
    73. pkgconfig(xkbcommon)
    74. pkgconfig(xrandr)
    75. pkgconfig(xscrnsaver)
    76. pkgconfig(xt)
    77. pkgconfig(xtst)
    78. pkgconfig(zlib)
    79. pkgconfig(alsa)
    80. pkgconfig(aom)
    81. pkgconfig(bzip2)
    82. pkgconfig(cairo)
    83. pkgconfig(dav1d)
    84. pkgconfig(dbus-1)
    85. pkgconfig(dbus-glib-1)
    86. pkgconfig(dri)
    87. pkgconfig(fontconfig)
    88. pkgconfig(freetype2)
    89. pkgconfig(gio-2.0)
    90. python3(click)
    91. pkgconfig(graphite2)
    92. pkgconfig(gtk+-2.0)
    93. pkgconfig(gtk+-3.0)
    94. pkgconfig(harfbuzz)
    95. pkgconfig(hunspell)
    96. pkgconfig(icu-i18n)
    97. pkgconfig(libcurl)
    98. pkgconfig(libdrm)
    99. pkgconfig(libevent)
    100. pkgconfig(libffi)
    101. pkgconfig(libjpeg)
    102. pkgconfig(libnotify)
    103. pkgconfig(libproxy-1.0)
    104. pkgconfig(libpulse)
    105. pkgconfig(libstartup-notification-1.0)
    106. python3(imp)
    107. pkgconfig(opus)
    108. pkgconfig(pixman-1)
    109. python3(hamcrest)
    110. python3(curses)
    111. rust-cargo
    112. unzip
    113. xorg-cf-files
    114. yasm
    115. zip
    116. zlib-devel

Last changed


March 2, 2026 Ivan A. Melnikov 148.0-alt0.port
- Fix FTBFS on loongarch64 via patch for bundeled libbrotli (thx k0tran@).
Feb. 28, 2026 Ajrat Makhmutov 148.0-alt2
- Update l10n for the 148.
Feb. 25, 2026 Ajrat Makhmutov 148.0-alt1
- New version.
- Fixes:
  + CVE-2026-2757: Incorrect boundary conditions in the WebRTC: Audio/Video component
  + CVE-2026-2758: Use-after-free in the JavaScript: GC component
  + CVE-2026-2759: Incorrect boundary conditions in the Graphics: ImageLib component
  + CVE-2026-2795: Use-after-free in the JavaScript: GC component
  + CVE-2026-2760: Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component
  + CVE-2026-2761: Sandbox escape in the Graphics: WebRender component
  + CVE-2026-2762: Integer overflow in the JavaScript: Standard Library component
  + CVE-2026-2763: Use-after-free in the JavaScript Engine component
  + CVE-2026-2764: JIT miscompilation, use-after-free in the JavaScript Engine: JIT component
  + CVE-2026-2796: JIT miscompilation in the JavaScript: WebAssembly component
  + CVE-2026-2797: Use-after-free in the JavaScript: GC component
  + CVE-2026-2765: Use-after-free in the JavaScript Engine component
  + CVE-2026-2766: Use-after-free in the JavaScript Engine: JIT component
  + CVE-2026-2767: Use-after-free in the JavaScript: WebAssembly component
  + CVE-2026-2768: Sandbox escape in the Storage: IndexedDB component
  + CVE-2026-2798: Use-after-free in the DOM: Core & HTML component
  + CVE-2026-2769: Use-after-free in the Storage: IndexedDB component
  + CVE-2026-2799: Use-after-free in the DOM: Core & HTML component
  + CVE-2026-2770: Use-after-free in the DOM: Bindings (WebIDL) component
  + CVE-2026-2771: Undefined behavior in the DOM: Core & HTML component
  + CVE-2026-2772: Use-after-free in the Audio/Video: Playback component
  + CVE-2026-2773: Incorrect boundary conditions in the Web Audio component
  + CVE-2026-2774: Integer overflow in the Audio/Video component
  + CVE-2026-2775: Mitigation bypass in the DOM: HTML Parser component
  + CVE-2026-2776: Sandbox escape due to incorrect boundary conditions in the Telemetry component in External Software
  + CVE-2026-2777: Privilege escalation in the Messaging System component
  + CVE-2026-2778: Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component
  + CVE-2026-2779: Incorrect boundary conditions in the Networking: JAR component
  + CVE-2026-2800: Spoofing issue in the WebAuthn component in Firefox for Android
  + CVE-2026-2780: Privilege escalation in the Netmonitor component
  + CVE-2026-2781: Integer overflow in the Libraries component in NSS
  + CVE-2026-2801: Incorrect boundary conditions in the JavaScript: WebAssembly component
  + CVE-2026-2782: Privilege escalation in the Netmonitor component
  + CVE-2026-2783: Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component
  + CVE-2026-2802: Race condition in the JavaScript: GC component
  + CVE-2026-2803: Information disclosure, mitigation bypass in the Settings UI component
  + CVE-2026-2784: Mitigation bypass in the DOM: Security component
  + CVE-2026-2785: Invalid pointer in the JavaScript Engine component
  + CVE-2026-2804: Use-after-free in the JavaScript: WebAssembly component
  + CVE-2026-2786: Use-after-free in the JavaScript Engine component
  + CVE-2026-2805: Invalid pointer in the DOM: Core & HTML component
  + CVE-2026-2787: Use-after-free in the DOM: Window and Location component
  + CVE-2026-2788: Incorrect boundary conditions in the Audio/Video: GMP component
  + CVE-2026-2789: Use-after-free in the Graphics: ImageLib component
  + CVE-2026-2806: Uninitialized memory in the Graphics: Text component
  + CVE-2026-2790: Same-origin policy bypass in the Networking: JAR component
  + CVE-2026-2791: Mitigation bypass in the Networking: Cache component
  + CVE-2026-2807: Memory safety bugs fixed in Firefox 148 and Thunderbird 148
  + CVE-2026-2792: Memory safety bugs fixed in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148
  + CVE-2026-2793: Memory safety bugs fixed in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148