{"id":"RHSA-2023:4947","summary":"Red Hat Security Advisory: thunderbird security update","modified":"2025-11-22T12:55:04Z","published":"2024-09-16T12:54:43Z","upstream":["CVE-2023-4051","CVE-2023-4053","CVE-2023-4573","CVE-2023-4574","CVE-2023-4575","CVE-2023-4577","CVE-2023-4578","CVE-2023-4580","CVE-2023-4581","CVE-2023-4583","CVE-2023-4584","CVE-2023-4585"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2023:4947"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#important"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236071"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236072"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236073"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236075"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236076"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236077"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236078"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236079"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236080"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236082"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236084"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2236086"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_4947.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4051"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4051"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4051"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4051"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4053"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4053"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4053"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4053"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4573"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4573"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4573"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4573"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4574"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4574"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4574"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4574"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4575"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4575"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4575"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4575"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4577"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4577"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4577"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4577"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4578"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4578"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4578"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4578"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4580"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4580"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4580"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4580"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4581"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4581"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4581"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4581"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4583"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4583"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4583"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4583"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4584"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4584"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4584"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4584"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2023-4585"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2023-4585"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-4585"},{"type":"ARTICLE","url":"https://www.mozilla.org/en-US/security/advisories/mfsa2023-36/#CVE-2023-4585"}],"affected":[{"package":{"name":"thunderbird","ecosystem":"Red Hat:rhel_eus:9.0::appstream","purl":"pkg:rpm/redhat/thunderbird"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:102.15.0-1.el9_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2023:4947.json"}},{"package":{"name":"thunderbird-debuginfo","ecosystem":"Red Hat:rhel_eus:9.0::appstream","purl":"pkg:rpm/redhat/thunderbird-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:102.15.0-1.el9_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2023:4947.json"}},{"package":{"name":"thunderbird-debugsource","ecosystem":"Red Hat:rhel_eus:9.0::appstream","purl":"pkg:rpm/redhat/thunderbird-debugsource"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:102.15.0-1.el9_0"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2023:4947.json"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"}]}