• Home
  • About
  • Contact us
Tech News, Magazine & Review WordPress Theme 2017
  • Computing
  • Entertainment
  • Gaming
  • Mobile
  • Science
  • Security
  • Services
  • Software
  • Space
No Result
View All Result
  • Computing
  • Entertainment
  • Gaming
  • Mobile
  • Science
  • Security
  • Services
  • Software
  • Space
Technovanguard — Be at the forefront of technology news
No Result
View All Result

Thunderbird 91.5.0 fixes several security issues

Justin Rowell by Justin Rowell
29.09.2022
Home Software

Thunderbird 91.5.0 Stable is a security update that addresses several issues in the open source email client.

thunderbird 91.5.0

The new version of Thunderbird Stable is already available. It is pushed to user systems, provided that automatic updating has not been disabled.

Thunderbird users may run manual checks for updates to install the update early. Select Help > About Thunderbird to display the installed version and have Thunderbird run a check for updates manually. Users who don’t see the menubar need to press the Alt-key on the keyboard to display it.

The official release notes list just three entries: two refer to fixed issues in the email client, one links to the security advisories page, which details the fixed security issues in the client.

The two non-security issues that were fixed address a display issue for RSS keyword labels and missing information on Thunderbird’s about dialog page.

The security advisories page for Thunderbird 91.5 lists 14 security issues, many of which come from the code that Thunderbird shares with the Firefox web browser.

The highest severity rating of all vulnerabilities is high, second only to the critical rating. Here is the full list of security issues patched in the new Thunderbird version:

  1. CVE-2022-22746: Calling into reportValidity could have lead to fullscreen window spoof
  2. CVE-2022-22743: Browser window spoof using fullscreen mode
  3. CVE-2022-22742: Out-of-bounds memory access when inserting text in edit mode
  4. CVE-2022-22741: Browser window spoof using fullscreen mode
  5. CVE-2022-22740: Use-after-free of ChannelEventQueue::mOwner
  6. CVE-2022-22738: Heap-buffer-overflow in blendGaussianBlur
  7. CVE-2022-22737: Race condition when playing audio files
  8. CVE-2021-4140: Iframe sandbox bypass with XSLT
  9. CVE-2022-22748: Spoofed origin on external protocol launch dialog
  10. CVE-2022-22745: Leaking cross-origin URLs through securitypolicyviolation event
  11. CVE-2022-22744: The ‘Copy as curl’ feature in DevTools did not fully escape website-controlled data, potentially leading to command injection
  12. CVE-2022-22747: Crash when handling empty pkcs7 sequence
  13. CVE-2022-22739: Missing throttling on external protocol launch dialog
  14. CVE-2022-22751: Memory safety bugs fixed in Thunderbird 91.5

Now You: do you use Thunderbird? What would you like to see supported?

 

Thank you for being a Ghacks reader. The post Thunderbird 91.5.0 fixes several security issues appeared first on gHacks Technology News.


Next Post
Destiny 2 trailer introduces The Witch Queen’s throne world

Destiny 2 trailer introduces The Witch Queen’s throne world

Recommended.

How to Preserve Your Capital in a Tightened Regulatory Environment

How to Preserve Your Capital in a Tightened Regulatory Environment

01.02.2024
Tech Industry Faces Unprecedented Workforce Challenges as Layoffs Surpass 2022 Numbers

Tech Industry Faces Unprecedented Workforce Challenges as Layoffs Surpass 2022 Numbers

01.02.2024

Trending.

Google’s Financial Triumphs and Challenges: 100 Million Google One Subscribers, Cloud Profits, and Strategic Moves

Google’s Financial Triumphs and Challenges: 100 Million Google One Subscribers, Cloud Profits, and Strategic Moves

01.02.2024
Singtel Collaborates with Nvidia, Unveils Nxera for AI-Focused Datacenters Across Southeast Asia

Singtel Collaborates with Nvidia, Unveils Nxera for AI-Focused Datacenters Across Southeast Asia

01.02.2024
Technovanguard — Be at the forefront of technology news

Technovanguard - The latest news from the world of IT and modern technologies.

Categories

  • Computing
  • Entertainment
  • Gaming
  • Internet
  • Mobile
  • News
  • Science
  • Security
  • Services
  • Software
  • Space
  • Без рубрики

Tags

best bitcoin casino best bitcoin gambling site best crypto casino bitcoin gambling site btc casino cloud services digital services FEATUREDNEWS IT linkedin connection message linkedin connection request template linkedin connect message examples linkedin networking message template linkedin sales message Recommended top bitcoin casinos Trending

Recent News

Lessons From The Trading Floor: Building Trust In The CFD Market

21.05.2025
Residential homes made of foam

Prejudice to Foam and Its Impact on People’s Lives

02.04.2025
  • Home
  • About
  • Contact us

© 2021 technovanguard.com. Submit news release

No Result
View All Result
  • Computing
  • Entertainment
  • Gaming
  • Mobile
  • Science
  • Security
  • Services
  • Software
  • Space

© 2021 technovanguard.com. Submit news release