Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.884236
Kategorie:CentOS Local Security Checks
Titel:CentOS: Security Advisory for thunderbird (CESA-2022:5773)
Zusammenfassung:The remote host is missing an update for the 'thunderbird'; package(s) announced via the CESA-2022:5773 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'thunderbird'
package(s) announced via the CESA-2022:5773 advisory.

Vulnerability Insight:
Mozilla Thunderbird is a standalone mail and newsgroup client.

This update upgrades Thunderbird to version 91.12.0.

Security Fix(es):

* Mozilla: Memory safety bugs fixed in Firefox 103 and 102.1
(CVE-2022-2505)

* Mozilla: Directory indexes for bundled resources reflected URL parameters
(CVE-2022-36318)

* Mozilla: Mouse Position spoofing with CSS transforms (CVE-2022-36319)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.

Affected Software/OS:
'thunderbird' package(s) on CentOS 7.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2022-2505
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1769739%2C1772824
https://www.mozilla.org/security/advisories/mfsa2022-28/
https://www.mozilla.org/security/advisories/mfsa2022-30/
https://www.mozilla.org/security/advisories/mfsa2022-32/
Common Vulnerability Exposure (CVE) ID: CVE-2022-36318
https://bugzilla.mozilla.org/show_bug.cgi?id=1771774
https://www.mozilla.org/security/advisories/mfsa2022-29/
https://www.mozilla.org/security/advisories/mfsa2022-31/
Common Vulnerability Exposure (CVE) ID: CVE-2022-36319
https://bugzilla.mozilla.org/show_bug.cgi?id=1737722
CopyrightCopyright (C) 2022 Greenbone Networks GmbH

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.