[ASA-201711-43] thunderbird: multiple issues
Arch Linux Security Advisory ASA-201711-43 ========================================== Severity: Critical Date : 2017-11-30 CVE-ID : CVE-2017-7826 CVE-2017-7828 CVE-2017-7830 Package : thunderbird Type : multiple issues Remote : Yes Link : Summary ======= The package thunderbird before version 52.5.0-1 is vulnerable to multiple issues including arbitrary code execution and same-origin policy bypass. Resolution ========== Upgrade to 52.5.0-1. # pacman -Syu "thunderbird>=52.5.0-1" The problems have been fixed upstream in version 52.5.0. Workaround ========== None. Description =========== - CVE-2017-7826 (arbitrary code execution) Several reported memory safety bugs have been found in Firefox before 57.0 and Thunderbird before 52.5. Some of these bugs showed evidence of memory corruption and with enough effort some of these could probably be exploited to run arbitrary code. - CVE-2017-7828 (arbitrary code execution) A use-after-free vulnerability can occur in Firefox before 57.0 and Thunderbird before 52.5 when flushing and resizing layout because the PressShell object has been freed while still in use. This results in a potentially exploitable crash during these operations. - CVE-2017-7830 (same-origin policy bypass) The Resource Timing API in Firefox before 57.0 and Thunderbird before 52.5 incorrectly revealed navigations in cross-origin iframes. This is a same-origin policy violation and could allow for data theft of URLs loaded by users. Impact ====== A remote attacker is able to bypass same-origin policy restrictions or execute arbitrary code on the affected host. References ==========