Bug 1074045 (CVE-2017-7848)

Summary: VUL-0: CVE-2017-7848: MozillaThunderbird: RSS Feed vulnerable to new line Injection
Product: [openSUSE] openSUSE Distribution Reporter: Andreas Stieger <astieger>
Component: SecurityAssignee: Security Team bot <security-team>
Status: RESOLVED FIXED QA Contact: Security Team bot <security-team>
Severity: Normal    
Priority: P3 - Medium CC: abergmann, wolfgang
Version: Leap 42.3   
Target Milestone: ---   
Hardware: Other   
OS: Other   
URL: https://smash.suse.de/issue/197242/
Whiteboard:
Found By: Security Response Team Services Priority:
Business Priority: Blocker: ---
Marketing QA Status: --- IT Deployment: ---

Comment 1 Swamp Workflow Management 2017-12-23 22:50:09 UTC
This is an autogenerated message for OBS integration:
This bug (1074045) was mentioned in
https://build.opensuse.org/request/show/559659 42.2+42.3+Backports:SLE-12 / MozillaThunderbird
Comment 2 Andreas Stieger 2017-12-24 08:34:32 UTC
submitted
Comment 3 Andreas Stieger 2017-12-24 22:29:29 UTC
done
Comment 4 Swamp Workflow Management 2017-12-25 02:07:37 UTC
openSUSE-SU-2017:3433-1: An update that fixes four vulnerabilities is now available.

Category: security (important)
Bug References: 1074043,1074044,1074045,1074046
CVE References: CVE-2017-7829,CVE-2017-7846,CVE-2017-7847,CVE-2017-7848
Sources used:
SUSE Package Hub for SUSE Linux Enterprise 12 (src):    MozillaThunderbird-52.5.2-51.1
Comment 5 Swamp Workflow Management 2017-12-25 02:08:11 UTC
openSUSE-SU-2017:3434-1: An update that fixes four vulnerabilities is now available.

Category: security (important)
Bug References: 1074043,1074044,1074045,1074046
CVE References: CVE-2017-7829,CVE-2017-7846,CVE-2017-7847,CVE-2017-7848
Sources used:
openSUSE Leap 42.3 (src):    MozillaThunderbird-52.5.2-53.1
openSUSE Leap 42.2 (src):    MozillaThunderbird-52.5.2-41.24.1
Comment 7 Swamp Workflow Management 2018-03-24 10:20:14 UTC
This is an autogenerated message for OBS integration:
This bug (1074045) was mentioned in
https://build.opensuse.org/request/show/590813 42.3 / MozillaThunderbird