FYI...
Thunderbird 52.5.2 released
- https://www.mozilla....2/releasenotes/
Dec 22, 2017
What’s New:
Fixed: This releases fixes the "Mailsploit" vulnerability and other vulnerabilities detected by the "Cure53" audit. For details and various other security fixes see here*.
* https://www.mozilla....underbird52.5.2
...
> https://www.mozilla....es/mfsa2017-30/
Critical
CVE-2017-7845: Buffer overflow when drawing and validating elements with ANGLE library using Direct 3D 9
Automated Updates: https://support.mozi...ing-thunderbird
Manual check: Go to >Help >About Thunderbird
Addons: https://addons.mozil...US/thunderbird/
Download
- https://www.mozilla....hunderbird/all/
___
- https://www.us-cert....ate-Thunderbird
Dec 25, 2017
___
- https://www.security....com/id/1040123
CVE Reference: CVE-2017-7829, CVE-2017-7845, CVE-2017-7846, CVE-2017-7847, CVE-2017-7848
Jan 8 2018
Fix Available: Yes Vendor Confirmed: Yes ...
Impact: A remote user can create content that, when loaded by the target user, will execute arbitrary code on the target user's system.
A remote user can obtain potentially sensitive information on the target system.
A remote user can spoof the sender's email address.
Solution: The vendor has issued a fix (52.5.2).
The vendor advisory is available at: https://www.mozilla....es/mfsa2017-30/
Edited by AplusWebMaster, 17 January 2018 - 10:15 AM.