{"id":"MGASA-2022-0097","summary":"Updated thunderbird packages fix security vulnerabilities","details":"An attacker could have caused a use-after-free by forcing a text reflow in an\nSVG object leading to a potentially exploitable crash (CVE-2022-26381).\n\nWhen resizing a popup after requesting fullscreen access, the popup would not\ndisplay the fullscreen notification (CVE-2022-26383).\n\nIf an attacker could control the contents of an iframe sandboxed with\nallow-popups but not allow-scripts, they were able to craft a link that, when\nclicked, would lead to JavaScript execution in violation of the sandbox\n(CVE-2022-26384).\n\nPreviously Thunderbird for macOS and Linux would download temporary files to\na user-specific directory in /tmp, but this behavior was changed to download\nthem to /tmp where they could be affected by other local users. This behavior\nwas reverted to the original, user-specific directory (CVE-2022-26386).\n\nWhen installing an add-on, Thunderbird verified the signature before\nprompting the user; but while the user was confirming the prompt, the\nunderlying add-on file could have been modified and Thunderbird would not\nhave noticed (CVE-2022-26387).\n","modified":"2026-04-16T04:43:30.956449630Z","published":"2022-03-11T08:51:47Z","upstream":["CVE-2022-26381","CVE-2022-26383","CVE-2022-26384","CVE-2022-26386","CVE-2022-26387"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2022-0097.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=30144"},{"type":"ADVISORY","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2022-12/"},{"type":"WEB","url":"https://www.thunderbird.net/en-US/thunderbird/91.7.0/releasenotes/"}],"affected":[{"package":{"name":"thunderbird","ecosystem":"Mageia:8","purl":"pkg:rpm/mageia/thunderbird?arch=source&distro=mageia-8"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"91.7.0-1.mga8"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2022-0097.json"}},{"package":{"name":"thunderbird-l10n","ecosystem":"Mageia:8","purl":"pkg:rpm/mageia/thunderbird-l10n?arch=source&distro=mageia-8"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"91.7.0-1.mga8"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2022-0097.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}