The Stand-Alone Mozilla Mail Component
Mozilla Thunderbird is a redesign of the Mozilla Mail component. It is
written using the XUL user interface language and designed to be
cross-platform. It is a stand-alone application instead of part of the
Mozilla application suite.
- Developed at mozilla:Factory
- Sources inherited from project openSUSE:Factory
-
6
derived packages
- Download package
-
Checkout Package
osc -A https://api.opensuse.org checkout openSUSE:Leap:15.0:Staging:FactoryCandidates/MozillaThunderbird && cd $_
- Create Badge
Refresh
Refresh
Source Files
Revision 298 (latest revision is 335)
Dominique Leuenberger (dimstar_suse)
accepted
request 1036233
from
Wolfgang Rosenauer (wrosenauer)
(revision 298)
- Mozilla Thunderbird 102.5.0 * changes and fixes as described here https://www.thunderbird.net/en-US/thunderbird/102.5.0/releasenotes MFSA 2022-49 (bsc#1205270) * CVE-2022-45403 (bmo#1762078) Service Workers might have learned size of cross-origin media files * CVE-2022-45404 (bmo#1790815) Fullscreen notification bypass * CVE-2022-45405 (bmo#1791314) Use-after-free in InputStream implementation * CVE-2022-45406 (bmo#1791975) Use-after-free of a JavaScript Realm * CVE-2022-45408 (bmo#1793829) Fullscreen notification bypass via windowName * CVE-2022-45409 (bmo#1796901) Use-after-free in Garbage Collection * CVE-2022-45410 (bmo#1658869) ServiceWorker-intercepted requests bypassed SameSite cookie policy * CVE-2022-45411 (bmo#1790311) Cross-Site Tracing was possible via non-standard override headers * CVE-2022-45412 (bmo#1791029) Symlinks may resolve to partially uninitialized buffers * CVE-2022-45416 (bmo#1793676) Keystroke Side-Channel Leakage * CVE-2022-45418 (bmo#1795815) Custom mouse cursor could have been drawn over browser UI * CVE-2022-45420 (bmo#1792643) Iframe contents could be rendered outside the iframe * CVE-2022-45421 (bmo#1767920, bmo#1789808, bmo#1794061) Memory safety bugs fixed in Thunderbird 102.5
Comments 6
just a tip. thunderbird version is now up to 78.1.1. can you please update this app?
we decided to not update as long as OpenPGP support is not available. This is supposed to be with 78.2
oh, ok. that's understandable.
i am having major probs with contact or mail. can't even download my emails. can't send emails either. i have sent a debug thingy to plasma or kde developers
Is there a reason why the new 115 Nova update is not yet available?
yes, the reason is because it's WIP
Okay thanks, sorry I did not want to be rude. I just thought it might be delayed on purpose, because it is such a big change.