[<prev] [next>] [day] [month] [year] [list]
Message-id: <E1I1BtH-00059L-4G@artemis.annvix.ca>
Date: Wed, 20 Jun 2007 19:55:19 -0600
From: security@...driva.com
To: full-disclosure@...ts.grok.org.uk
Subject: [ MDKSA-2007:131 ] - Updated Thunderbird packages
fix multiple vulnerabilities
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
_______________________________________________________________________
Mandriva Linux Security Advisory MDKSA-2007:131
http://www.mandriva.com/security/
_______________________________________________________________________
Package : mozilla-thunderbird
Date : June 20, 2007
Affected: 2007.1
_______________________________________________________________________
Problem Description:
A number of security vulnerabilities have been discovered and corrected
in the latest Mozilla Thunderbird program, version 2.0.0.4.
This update provides the latest Thunderbird to correct these issues.
_______________________________________________________________________
References:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1558
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2867
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2868
http://www.mozilla.org/security/announce/2007/mfsa2007-12.html
http://www.mozilla.org/security/announce/2007/mfsa2007-15.html
_______________________________________________________________________
Updated Packages:
Mandriva Linux 2007.1:
8c3b21bd6110ea00faacaf2da715ad0c 2007.1/i586/mozilla-thunderbird-2.0.0.4-2mdv2007.1.i586.rpm
ff29cae14c983eebe4d0551761d7a80d 2007.1/i586/mozilla-thunderbird-be-2.0.0.4-1mdv2007.1.i586.rpm
4b4569fdd0983e4162a8e6effe0f8517 2007.1/i586/mozilla-thunderbird-bg-2.0.0.4-1mdv2007.1.i586.rpm
26ddf747ae8b7897b8df21b574776447 2007.1/i586/mozilla-thunderbird-ca-2.0.0.4-1mdv2007.1.i586.rpm
d23e20b719b8b1b405144d57172924f2 2007.1/i586/mozilla-thunderbird-cs-2.0.0.4-1mdv2007.1.i586.rpm
44c4f043f06c600363e0b8f8f05cb7f1 2007.1/i586/mozilla-thunderbird-da-2.0.0.4-1mdv2007.1.i586.rpm
772bf21de58055281088350789c3b465 2007.1/i586/mozilla-thunderbird-de-2.0.0.4-1mdv2007.1.i586.rpm
eaca2571eb9f28790134dfd2e6fa5257 2007.1/i586/mozilla-thunderbird-devel-2.0.0.4-2mdv2007.1.i586.rpm
063dfef324530a74f0047e9623711485 2007.1/i586/mozilla-thunderbird-el-2.0.0.4-1mdv2007.1.i586.rpm
b8220ab36a83eda16aa4d65e49b144e9 2007.1/i586/mozilla-thunderbird-en_GB-2.0.0.4-1mdv2007.1.i586.rpm
0b3d4f8fc73e7892e8be532a238e916e 2007.1/i586/mozilla-thunderbird-enigmail-2.0.0.4-2mdv2007.1.i586.rpm
76bf518775daecaa3a90daceb18c753c 2007.1/i586/mozilla-thunderbird-enigmail-ca-2.0.0.4-1mdv2007.1.i586.rpm
d8588890abb79021f1a5b75a84efe263 2007.1/i586/mozilla-thunderbird-enigmail-de-2.0.0.4-1mdv2007.1.i586.rpm
62c1e6f46a34fd9c6e8456a3aea1044c 2007.1/i586/mozilla-thunderbird-enigmail-el-2.0.0.4-1mdv2007.1.i586.rpm
998780d471a6f5cbc87b9c2a51cab492 2007.1/i586/mozilla-thunderbird-enigmail-es-2.0.0.4-1mdv2007.1.i586.rpm
b6ab499044ca4110b93ab24c66f21107 2007.1/i586/mozilla-thunderbird-enigmail-fi-2.0.0.4-1mdv2007.1.i586.rpm
8277b94e3900075d7843cf7b1d7c07f2 2007.1/i586/mozilla-thunderbird-enigmail-fr-2.0.0.4-1mdv2007.1.i586.rpm
e5efed88f91ef64e36fc46bc79d49269 2007.1/i586/mozilla-thunderbird-enigmail-hu-2.0.0.4-1mdv2007.1.i586.rpm
0d5da8f69bcf3d551ba9e3ef7364dc3c 2007.1/i586/mozilla-thunderbird-enigmail-it-2.0.0.4-1mdv2007.1.i586.rpm
10d11ce39b5893e747beb6d6d4605124 2007.1/i586/mozilla-thunderbird-enigmail-ja-2.0.0.4-1mdv2007.1.i586.rpm
e0663cdbb07c1fe69d1b770b49a84000 2007.1/i586/mozilla-thunderbird-enigmail-nb-2.0.0.4-1mdv2007.1.i586.rpm
8c5073c21c2dc381720383d6ff9ccd7f 2007.1/i586/mozilla-thunderbird-enigmail-pl-2.0.0.4-1mdv2007.1.i586.rpm
78404a7676b3e592cad86d97f8aa0c43 2007.1/i586/mozilla-thunderbird-enigmail-pt_BR-2.0.0.4-1mdv2007.1.i586.rpm
59bdf973848c6fbb6e87073a053b3a23 2007.1/i586/mozilla-thunderbird-enigmail-ru-2.0.0.4-1mdv2007.1.i586.rpm
d4d238360b92506c0aa326cf739a0f5c 2007.1/i586/mozilla-thunderbird-enigmail-sl-2.0.0.4-1mdv2007.1.i586.rpm
b48b608e748cb9ffc9a57f1713465b4b 2007.1/i586/mozilla-thunderbird-enigmail-sv-2.0.0.4-1mdv2007.1.i586.rpm
41d52bae349ef452f1bd42104404acf8 2007.1/i586/mozilla-thunderbird-enigmail-zh_CN-2.0.0.4-1mdv2007.1.i586.rpm
fad7994bf17e62b8f1f809ff5e3cfb7f 2007.1/i586/mozilla-thunderbird-es-2.0.0.4-1mdv2007.1.i586.rpm
b1246fe4e2983f9259e4f264ff3dc27d 2007.1/i586/mozilla-thunderbird-es_AR-2.0.0.4-1mdv2007.1.i586.rpm
058d6e3f39afcadf10df06feafce476b 2007.1/i586/mozilla-thunderbird-et-2.0.0.4-1mdv2007.1.i586.rpm
dac63d98011fb37cefd0807d1c539463 2007.1/i586/mozilla-thunderbird-eu-2.0.0.4-1mdv2007.1.i586.rpm
acef696969d31d2a8a04b278e5470312 2007.1/i586/mozilla-thunderbird-fi-2.0.0.4-1mdv2007.1.i586.rpm
ecf3b155cbd71a07e3d7225b9d73d418 2007.1/i586/mozilla-thunderbird-fr-2.0.0.4-1mdv2007.1.i586.rpm
d350a0a02bd3aa33befb68fd424eb9ef 2007.1/i586/mozilla-thunderbird-gu_IN-2.0.0.4-1mdv2007.1.i586.rpm
687932a50a3e3dc08cc4d0c3f360de15 2007.1/i586/mozilla-thunderbird-he-2.0.0.4-1mdv2007.1.i586.rpm
b54910c2eef57e21522306d990de3245 2007.1/i586/mozilla-thunderbird-hu-2.0.0.4-1mdv2007.1.i586.rpm
46789bd2da3878b2bd11b93141bfd575 2007.1/i586/mozilla-thunderbird-it-2.0.0.4-1mdv2007.1.i586.rpm
032d85c06a225658ef4b49c2aa6141db 2007.1/i586/mozilla-thunderbird-ja-2.0.0.4-1mdv2007.1.i586.rpm
761273c5781b7951608a3f838fb53b37 2007.1/i586/mozilla-thunderbird-ko-2.0.0.4-1mdv2007.1.i586.rpm
4c7a9e8ab00d73aa1f075439683ae021 2007.1/i586/mozilla-thunderbird-lt-2.0.0.4-1mdv2007.1.i586.rpm
9eff19f7e8548fbf1bf59a99666bd28a 2007.1/i586/mozilla-thunderbird-mk-2.0.0.4-1mdv2007.1.i586.rpm
649a567ee7d8e75f9b10376ad28a3ea8 2007.1/i586/mozilla-thunderbird-nb-2.0.0.4-1mdv2007.1.i586.rpm
201bf92b3963e2de1020494b48ae193c 2007.1/i586/mozilla-thunderbird-nl-2.0.0.4-1mdv2007.1.i586.rpm
f8e79ed0e2c16613d46ab2ab0f6cbb8f 2007.1/i586/mozilla-thunderbird-nn_NO-2.0.0.4-1mdv2007.1.i586.rpm
ee48e56bf600fc490f1dac32b6c324f4 2007.1/i586/mozilla-thunderbird-pa_IN-2.0.0.4-1mdv2007.1.i586.rpm
4e775a314a3d871ae73a73ccda76f89f 2007.1/i586/mozilla-thunderbird-pl-2.0.0.4-1mdv2007.1.i586.rpm
e1605a4c5728a5a3ddff177fd96dff59 2007.1/i586/mozilla-thunderbird-pt_BR-2.0.0.4-1mdv2007.1.i586.rpm
a89be16e677793c60aabea3977554ef2 2007.1/i586/mozilla-thunderbird-pt_PT-2.0.0.4-1mdv2007.1.i586.rpm
33fc5c21e608b71b1229e863a36e8345 2007.1/i586/mozilla-thunderbird-ru-2.0.0.4-1mdv2007.1.i586.rpm
82f6f9a0aa4c4ec3e04ac9cd2993144c 2007.1/i586/mozilla-thunderbird-sk-2.0.0.4-1mdv2007.1.i586.rpm
24024041995915214908db8e8e69aac1 2007.1/i586/mozilla-thunderbird-sl-2.0.0.4-1mdv2007.1.i586.rpm
c55c85fe25781b1e477bd55353ac2e2f 2007.1/i586/mozilla-thunderbird-sv-2.0.0.4-1mdv2007.1.i586.rpm
251e2e73a82e9f099c2b53312e33e662 2007.1/i586/mozilla-thunderbird-tr-2.0.0.4-1mdv2007.1.i586.rpm
592fa12804135712e097aa4094b64512 2007.1/i586/mozilla-thunderbird-zh_CN-2.0.0.4-1mdv2007.1.i586.rpm
b1c4ed9193e65169baef91a13e6ee8d6 2007.1/i586/mozilla-thunderbird-zh_TW-2.0.0.4-1mdv2007.1.i586.rpm
f3b74a14911eb41eb9adf76056a33dfb 2007.1/i586/nsinstall-2.0.0.4-2mdv2007.1.i586.rpm
4ad53b5ad1634a5bc7db6c4b039f5ff3 2007.1/SRPMS/mozilla-thunderbird-2.0.0.4-2mdv2007.1.src.rpm
c92c813439a6e9348c916e409f8acc0e 2007.1/SRPMS/mozilla-thunderbird-enigmail-l10n-2.0.0.4-1mdv2007.1.src.rpm
5aab10e501a6860722c959404014c1fa 2007.1/SRPMS/mozilla-thunderbird-l10n-2.0.0.4-1mdv2007.1.src.rpm
Mandriva Linux 2007.1/X86_64:
989d08175e5dc46071c8defd9405eed9 2007.1/x86_64/mozilla-thunderbird-2.0.0.4-2mdv2007.1.x86_64.rpm
8bdbe1445db15ec6177b2d2f1b0745fc 2007.1/x86_64/mozilla-thunderbird-be-2.0.0.4-1mdv2007.1.x86_64.rpm
7684fabba32afa7b9650bb09bc21785b 2007.1/x86_64/mozilla-thunderbird-bg-2.0.0.4-1mdv2007.1.x86_64.rpm
400be7d9e636e504d72bb2323c78ab2b 2007.1/x86_64/mozilla-thunderbird-ca-2.0.0.4-1mdv2007.1.x86_64.rpm
b551c0c1a0e6e634b37827c2eef599f6 2007.1/x86_64/mozilla-thunderbird-cs-2.0.0.4-1mdv2007.1.x86_64.rpm
f5f6fad3fe955721acb8f3452ce1efe1 2007.1/x86_64/mozilla-thunderbird-da-2.0.0.4-1mdv2007.1.x86_64.rpm
79a6b7fe2882d61ad99ce101feeea3c9 2007.1/x86_64/mozilla-thunderbird-de-2.0.0.4-1mdv2007.1.x86_64.rpm
e352c13d374ec922a17f32be1f4ffd16 2007.1/x86_64/mozilla-thunderbird-devel-2.0.0.4-2mdv2007.1.x86_64.rpm
18f6800531d5fb0b0dd24881b1718967 2007.1/x86_64/mozilla-thunderbird-el-2.0.0.4-1mdv2007.1.x86_64.rpm
932e3d349cd47a19e577c2d177f5f678 2007.1/x86_64/mozilla-thunderbird-en_GB-2.0.0.4-1mdv2007.1.x86_64.rpm
9b0c02422ba5a8affe800ddf52fb1c39 2007.1/x86_64/mozilla-thunderbird-enigmail-2.0.0.4-2mdv2007.1.x86_64.rpm
dbf01e0ca5bee730b85c843a8c1ee9bb 2007.1/x86_64/mozilla-thunderbird-enigmail-ca-2.0.0.4-1mdv2007.1.x86_64.rpm
b1f0bf462ecfaea785de22daf52bfe5e 2007.1/x86_64/mozilla-thunderbird-enigmail-de-2.0.0.4-1mdv2007.1.x86_64.rpm
47a8b12b2836c5f0e600a154aac16c23 2007.1/x86_64/mozilla-thunderbird-enigmail-el-2.0.0.4-1mdv2007.1.x86_64.rpm
d30048fd33d91254b5bc4175f953fdf2 2007.1/x86_64/mozilla-thunderbird-enigmail-es-2.0.0.4-1mdv2007.1.x86_64.rpm
ff7c5cdc0fb20c3b2baf766307e10bec 2007.1/x86_64/mozilla-thunderbird-enigmail-fi-2.0.0.4-1mdv2007.1.x86_64.rpm
f6418ab78956dd503fd757b4f83ed786 2007.1/x86_64/mozilla-thunderbird-enigmail-fr-2.0.0.4-1mdv2007.1.x86_64.rpm
0d61f185c936b6322c765a5c5abf06fd 2007.1/x86_64/mozilla-thunderbird-enigmail-hu-2.0.0.4-1mdv2007.1.x86_64.rpm
21f136db908c30d22fc26287260ccc8c 2007.1/x86_64/mozilla-thunderbird-enigmail-it-2.0.0.4-1mdv2007.1.x86_64.rpm
19918f1fe6b2ca146d3cf6780ec3d4d4 2007.1/x86_64/mozilla-thunderbird-enigmail-ja-2.0.0.4-1mdv2007.1.x86_64.rpm
a3487ff41840a7a5d7ff8b5959548123 2007.1/x86_64/mozilla-thunderbird-enigmail-nb-2.0.0.4-1mdv2007.1.x86_64.rpm
b1006c75e153e3c28c4d9f934f279e9c 2007.1/x86_64/mozilla-thunderbird-enigmail-pl-2.0.0.4-1mdv2007.1.x86_64.rpm
d6acc110e480bf171701c58ae253422f 2007.1/x86_64/mozilla-thunderbird-enigmail-pt_BR-2.0.0.4-1mdv2007.1.x86_64.rpm
bff9a622761ca03f2b6ce84e1fe86b52 2007.1/x86_64/mozilla-thunderbird-enigmail-ru-2.0.0.4-1mdv2007.1.x86_64.rpm
93b3bdcc55092562f5f014dd96c3c6ec 2007.1/x86_64/mozilla-thunderbird-enigmail-sl-2.0.0.4-1mdv2007.1.x86_64.rpm
8d24026fe12bae60297026436500da50 2007.1/x86_64/mozilla-thunderbird-enigmail-sv-2.0.0.4-1mdv2007.1.x86_64.rpm
df89c388c55d7d50a159e79056683c48 2007.1/x86_64/mozilla-thunderbird-enigmail-zh_CN-2.0.0.4-1mdv2007.1.x86_64.rpm
fff53dd9d69195cefd1e859c9ca27f06 2007.1/x86_64/mozilla-thunderbird-es-2.0.0.4-1mdv2007.1.x86_64.rpm
d2fbd809d7530ea5e3205ee78a8176bc 2007.1/x86_64/mozilla-thunderbird-es_AR-2.0.0.4-1mdv2007.1.x86_64.rpm
46a0b5967b7fd37a2d522e083f5ef083 2007.1/x86_64/mozilla-thunderbird-et-2.0.0.4-1mdv2007.1.x86_64.rpm
b5acafd9814369f1bc88f56b2f76f370 2007.1/x86_64/mozilla-thunderbird-eu-2.0.0.4-1mdv2007.1.x86_64.rpm
502a87a1930a96b48bdb05ec7dcf4694 2007.1/x86_64/mozilla-thunderbird-fi-2.0.0.4-1mdv2007.1.x86_64.rpm
826000aaa77a12a215ff155de9a3b67f 2007.1/x86_64/mozilla-thunderbird-fr-2.0.0.4-1mdv2007.1.x86_64.rpm
95150b15aff6f358bdcf5eda0c3775a1 2007.1/x86_64/mozilla-thunderbird-gu_IN-2.0.0.4-1mdv2007.1.x86_64.rpm
7f842cd93bbb9e246d9fb09af074f085 2007.1/x86_64/mozilla-thunderbird-he-2.0.0.4-1mdv2007.1.x86_64.rpm
dd1c3c22f83c1e5601edbac41860f0ae 2007.1/x86_64/mozilla-thunderbird-hu-2.0.0.4-1mdv2007.1.x86_64.rpm
17f43a4a9045759c2d11e321b80b7878 2007.1/x86_64/mozilla-thunderbird-it-2.0.0.4-1mdv2007.1.x86_64.rpm
ac1d3bce6143418bffd16511ded2f5bf 2007.1/x86_64/mozilla-thunderbird-ja-2.0.0.4-1mdv2007.1.x86_64.rpm
40d0c0800fa8629513914ef99ffd3386 2007.1/x86_64/mozilla-thunderbird-ko-2.0.0.4-1mdv2007.1.x86_64.rpm
338d43ba651c338c5caf27730681859d 2007.1/x86_64/mozilla-thunderbird-lt-2.0.0.4-1mdv2007.1.x86_64.rpm
741718960bc383bb4420f3f08b655b52 2007.1/x86_64/mozilla-thunderbird-mk-2.0.0.4-1mdv2007.1.x86_64.rpm
b902599b360c785da15b09545fe354fc 2007.1/x86_64/mozilla-thunderbird-nb-2.0.0.4-1mdv2007.1.x86_64.rpm
1c172b3c483d148174ba83f5b967b867 2007.1/x86_64/mozilla-thunderbird-nl-2.0.0.4-1mdv2007.1.x86_64.rpm
a62687db67a11e090059ccbf986412f1 2007.1/x86_64/mozilla-thunderbird-nn_NO-2.0.0.4-1mdv2007.1.x86_64.rpm
49d2cd68c3a90e81d2940bffd7e189f1 2007.1/x86_64/mozilla-thunderbird-pa_IN-2.0.0.4-1mdv2007.1.x86_64.rpm
63a86ff1efa5addd4041b5c6a02bd6ab 2007.1/x86_64/mozilla-thunderbird-pl-2.0.0.4-1mdv2007.1.x86_64.rpm
dcf27a98439086a9aca9f8c7d3c964a4 2007.1/x86_64/mozilla-thunderbird-pt_BR-2.0.0.4-1mdv2007.1.x86_64.rpm
90fa2aa3effaf20288aa325c8f71907c 2007.1/x86_64/mozilla-thunderbird-pt_PT-2.0.0.4-1mdv2007.1.x86_64.rpm
6f13820f3f78863e764521ac66e16c57 2007.1/x86_64/mozilla-thunderbird-ru-2.0.0.4-1mdv2007.1.x86_64.rpm
e07e88a20edabe5f473730f3889401c7 2007.1/x86_64/mozilla-thunderbird-sk-2.0.0.4-1mdv2007.1.x86_64.rpm
d30367d53a7e4e4d3be06f018d2adc12 2007.1/x86_64/mozilla-thunderbird-sl-2.0.0.4-1mdv2007.1.x86_64.rpm
20d6da94214ae5147587e48527dfe60b 2007.1/x86_64/mozilla-thunderbird-sv-2.0.0.4-1mdv2007.1.x86_64.rpm
ee6d4d644997f95b3e1c856d8c97411a 2007.1/x86_64/mozilla-thunderbird-tr-2.0.0.4-1mdv2007.1.x86_64.rpm
d6448d83cc1fb80e5a5a35b605645c56 2007.1/x86_64/mozilla-thunderbird-zh_CN-2.0.0.4-1mdv2007.1.x86_64.rpm
19236c8f704de1dcc64f967db9b879a3 2007.1/x86_64/mozilla-thunderbird-zh_TW-2.0.0.4-1mdv2007.1.x86_64.rpm
4f62629f7c2836ed019519d0feb241e8 2007.1/x86_64/nsinstall-2.0.0.4-2mdv2007.1.x86_64.rpm
4ad53b5ad1634a5bc7db6c4b039f5ff3 2007.1/SRPMS/mozilla-thunderbird-2.0.0.4-2mdv2007.1.src.rpm
c92c813439a6e9348c916e409f8acc0e 2007.1/SRPMS/mozilla-thunderbird-enigmail-l10n-2.0.0.4-1mdv2007.1.src.rpm
5aab10e501a6860722c959404014c1fa 2007.1/SRPMS/mozilla-thunderbird-l10n-2.0.0.4-1mdv2007.1.src.rpm
_______________________________________________________________________
To upgrade automatically use MandrivaUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.
All packages are signed by Mandriva for security. You can obtain the
GPG public key of the Mandriva Security Team by executing:
gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98
You can view other update advisories for Mandriva Linux at:
http://www.mandriva.com/security/advisories
If you want to report vulnerabilities, please contact
security_(at)_mandriva.com
_______________________________________________________________________
Type Bits/KeyID Date User ID
pub 1024D/22458A98 2000-07-10 Mandriva Security Team
<security*mandriva.com>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)
iD8DBQFGebBCmqjQ0CJFipgRAmjpAKCYSCbkmSAeA7O/YkAerZgz5czy3wCfUlJK
Ai8d66VlScuveeYTWiApfig=
=lHJC
-----END PGP SIGNATURE-----
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
Powered by blists - more mailing lists