Ubuntu Security Notice USN-3141-1

Discussion in 'News Aggregator' started by Packet Storm, 2 Dec 2016.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 3141-1 - Christian Holler, Jon Coppeard, Olli Pettay, Ehsan Akhgari, Gary Kwong, Tooru Fujisawa, and Randell Jesup discovered multiple memory safety issues in Thunderbird. If a user were tricked in to opening a specially crafted message, an attacker could potentially exploit these to cause a denial of service via application crash, or execute arbitrary code. A same-origin policy bypass was discovered with local HTML files in some circumstances. An attacker could potentially exploit this to obtain sensitive information. Various other issues were also addressed.

    Continue reading...
     

Share This Page

Loading...