{"id":"openSUSE-SU-2026:20664-1","summary":"Security update for MozillaThunderbird","details":"This update for MozillaThunderbird fixes the following issues:\n\nChanges in MozillaThunderbird:\n\n- Mozilla Thunderbird 140.10.0 ESR\n  * Newly translated strings were not available in Thunderbird\n  MFSA 2026-34 (bsc#1262230)\n  * CVE-2026-6746 Use-after-free in the DOM: Core & HTML component\n  * CVE-2026-6747 Use-after-free in the WebRTC component\n  * CVE-2026-6748 Uninitialized memory in the Audio/Video: Web Codecs component\n  * CVE-2026-6749 Information disclosure due to uninitialized memory in the Graphics: Canvas2D component\n  * CVE-2026-6750 Privilege escalation in the Graphics: WebRender component\n  * CVE-2026-6751 Uninitialized memory in the Audio/Video: Web Codecs component\n  * CVE-2026-6752 Incorrect boundary conditions in the WebRTC component\n  * CVE-2026-6753 Incorrect boundary conditions in the WebRTC component\n  * CVE-2026-6754 Use-after-free in the JavaScript Engine component\n  * CVE-2026-6757 Invalid pointer in the JavaScript: WebAssembly component\n  * CVE-2026-6759 Use-after-free in the Widget: Cocoa component\n  * CVE-2026-6761 Privilege escalation in the Networking component\n  * CVE-2026-6762 Spoofing issue in the DOM: Core & HTML component\n  * CVE-2026-6763 Mitigation bypass in the File Handling component\n  * CVE-2026-6764 Incorrect boundary conditions in the DOM: Device Interfaces component\n  * CVE-2026-6765 Information disclosure in the Form Autofill component\n  * CVE-2026-6766 Incorrect boundary conditions in the Libraries component in NSS\n  * CVE-2026-6767 Other issue in the Libraries component in NSS\n  * CVE-2026-6769 Privilege escalation in the Debugger component\n  * CVE-2026-6770 Other issue in the Storage: IndexedDB component\n  * CVE-2026-6771 Mitigation bypass in the DOM: Security component\n  * CVE-2026-6772 Incorrect boundary conditions in the Libraries component in NSS\n  * CVE-2026-6776 Incorrect boundary conditions in the WebRTC: Networking component\n  * CVE-2026-6785 Memory safety bugs fixed in Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150\n  * CVE-2026-6786 Memory safety bugs fixed in Firefox ESR 140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150\n\n- Mozilla Thunderbird 140.9.1 ESR\n  MFSA 2026-29\n  * CVE-2026-5732 Incorrect boundary conditions, integer overflow in the Graphics: Text component\n  * CVE-2026-5731 Memory safety bugs fixed in Firefox ESR 115.34.1, Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2\n  * CVE-2026-5734 Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2\n\n- Mozilla Thunderbird 140.9.0 ESR\n  MFSA 2026-24 (bsc#1260083)\n  * CVE-2026-3889 Spoofing issue in Thunderbird\n  * CVE-2026-4371 Out of bounds read in IMAP parsing\n  * CVE-2026-4684 Race condition, use-after-free in the Graphics: WebRender component\n  * CVE-2026-4685 Incorrect boundary conditions in the Graphics: Canvas2D component\n  * CVE-2026-4686 Incorrect boundary conditions in the Graphics: Canvas2D component\n  * CVE-2026-4687 Sandbox escape due to incorrect boundary conditions in the Telemetry component\n  * CVE-2026-4688 Sandbox escape due to use-after-free in the Disability Access APIs component\n  * CVE-2026-4689 Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component\n  * CVE-2026-4690 Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component\n  * CVE-2026-4691 Use-after-free in the CSS Parsing and Computation component\n  * CVE-2026-4692 Sandbox escape in the Responsive Design Mode component\n  * CVE-2026-4693 Incorrect boundary conditions in the Audio/Video: Playback component\n  * CVE-2026-4694 Incorrect boundary conditions, integer overflow in the Graphics component\n  * CVE-2026-4695 Incorrect boundary conditions in the Audio/Video: Web Codecs component\n  * CVE-2026-4696 Use-after-free in the Layout: Text and Fonts component\n  * CVE-2026-4697 Incorrect boundary conditions in the Audio/Video: Web Codecs component\n  * CVE-2026-4698 JIT miscompilation in the JavaScript Engine: JIT component\n  * CVE-2026-4699 Incorrect boundary conditions in the Layout: Text and Fonts component\n  * CVE-2026-4700 Mitigation bypass in the Networking: HTTP component\n  * CVE-2026-4701 Use-after-free in the JavaScript Engine component\n  * CVE-2026-4702 JIT miscompilation in the JavaScript Engine component\n  * CVE-2026-4704 Denial-of-service in the WebRTC: Signaling component\n  * CVE-2026-4705 Undefined behavior in the WebRTC: Signaling component\n  * CVE-2026-4706 Incorrect boundary conditions in the Graphics: Canvas2D component\n  * CVE-2026-4707 Incorrect boundary conditions in the Graphics: Canvas2D component\n  * CVE-2026-4708 Incorrect boundary conditions in the Graphics component\n  * CVE-2026-4709 Incorrect boundary conditions in the Audio/Video: GMP component\n  * CVE-2026-4710 Incorrect boundary conditions in the Audio/Video component\n  * CVE-2026-4711 Use-after-free in the Widget: Cocoa component\n  * CVE-2026-4712 Information disclosure in the Widget: Cocoa component\n  * CVE-2026-4713 Incorrect boundary conditions in the Graphics component\n  * CVE-2026-4714 Incorrect boundary conditions in the Audio/Video component\n  * CVE-2026-4715 Uninitialized memory in the Graphics: Canvas2D component\n  * CVE-2026-4716 Incorrect boundary conditions, uninitialized memory in the JavaScript Engine component\n  * CVE-2026-4717 Privilege escalation in the Netmonitor component\n  * CVE-2025-59375 Denial-of-service in the XML component\n  * CVE-2026-4718 Undefined behavior in the WebRTC: Signaling component\n  * CVE-2026-4719 Incorrect boundary conditions in the Graphics: Text component\n  * CVE-2026-4720 Memory safety bugs fixed in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149\n  * CVE-2026-4721 Memory safety bugs fixed in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149\n","modified":"2026-05-05T07:47:10.888728Z","published":"2026-05-01T17:00:28Z","related":["CVE-2025-59375","CVE-2026-3889","CVE-2026-4371","CVE-2026-4684","CVE-2026-4685","CVE-2026-4686","CVE-2026-4687","CVE-2026-4688","CVE-2026-4689","CVE-2026-4690","CVE-2026-4691","CVE-2026-4692","CVE-2026-4693","CVE-2026-4694","CVE-2026-4695","CVE-2026-4696","CVE-2026-4697","CVE-2026-4698","CVE-2026-4699","CVE-2026-4700","CVE-2026-4701","CVE-2026-4702","CVE-2026-4704","CVE-2026-4705","CVE-2026-4706","CVE-2026-4707","CVE-2026-4708","CVE-2026-4709","CVE-2026-4710","CVE-2026-4711","CVE-2026-4712","CVE-2026-4713","CVE-2026-4714","CVE-2026-4715","CVE-2026-4716","CVE-2026-4717","CVE-2026-4718","CVE-2026-4719","CVE-2026-4720","CVE-2026-4721","CVE-2026-5731","CVE-2026-5732","CVE-2026-5734","CVE-2026-6746","CVE-2026-6747","CVE-2026-6748","CVE-2026-6749","CVE-2026-6750","CVE-2026-6751","CVE-2026-6752","CVE-2026-6753","CVE-2026-6754","CVE-2026-6757","CVE-2026-6759","CVE-2026-6761","CVE-2026-6762","CVE-2026-6763","CVE-2026-6764","CVE-2026-6765","CVE-2026-6766","CVE-2026-6767","CVE-2026-6769","CVE-2026-6770","CVE-2026-6771","CVE-2026-6772","CVE-2026-6776","CVE-2026-6785","CVE-2026-6786"],"upstream":["CVE-2025-59375","CVE-2026-3889","CVE-2026-4371","CVE-2026-4684","CVE-2026-4685","CVE-2026-4686","CVE-2026-4687","CVE-2026-4688","CVE-2026-4689","CVE-2026-4690","CVE-2026-4691","CVE-2026-4692","CVE-2026-4693","CVE-2026-4694","CVE-2026-4695","CVE-2026-4696","CVE-2026-4697","CVE-2026-4698","CVE-2026-4699","CVE-2026-4700","CVE-2026-4701","CVE-2026-4702","CVE-2026-4704","CVE-2026-4705","CVE-2026-4706","CVE-2026-4707","CVE-2026-4708","CVE-2026-4709","CVE-2026-4710","CVE-2026-4711","CVE-2026-4712","CVE-2026-4713","CVE-2026-4714","CVE-2026-4715","CVE-2026-4716","CVE-2026-4717","CVE-2026-4718","CVE-2026-4719","CVE-2026-4720","CVE-2026-4721","CVE-2026-5731","CVE-2026-5732","CVE-2026-5734","CVE-2026-6746","CVE-2026-6747","CVE-2026-6748","CVE-2026-6749","CVE-2026-6750","CVE-2026-6751","CVE-2026-6752","CVE-2026-6753","CVE-2026-6754","CVE-2026-6757","CVE-2026-6759","CVE-2026-6761","CVE-2026-6762","CVE-2026-6763","CVE-2026-6764","CVE-2026-6765","CVE-2026-6766","CVE-2026-6767","CVE-2026-6769","CVE-2026-6770","CVE-2026-6771","CVE-2026-6772","CVE-2026-6776","CVE-2026-6785","CVE-2026-6786"],"references":[{"type":"ADVISORY"},{"type":"REPORT","url":"https://bugzilla.suse.com/1260083"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262230"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-59375"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-3889"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4371"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4684"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4685"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4686"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4687"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4688"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4689"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4690"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4691"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4692"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4693"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4694"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4695"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4696"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4697"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4698"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4699"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4700"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4701"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4702"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4704"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4705"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4706"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4707"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4708"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4709"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4710"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4711"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4712"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4713"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4714"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4715"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4716"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4717"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4718"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4719"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4720"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4721"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5731"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5732"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5734"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6746"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6747"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6748"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6749"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6750"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6751"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6752"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6753"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6754"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6757"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6759"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6761"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6762"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6763"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6764"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6765"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6766"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6767"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6769"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6770"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6771"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6772"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6776"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6785"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-6786"}],"schema_version":"1.7.5"}