Bugzilla – Bug 1074045
VUL-0: CVE-2017-7848: MozillaThunderbird: RSS Feed vulnerable to new line Injection
Last modified: 2019-02-19 07:07:44 UTC
RSS fields can inject new lines into the created email structure, modifying the message body. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-7848 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-7848 https://bugzilla.mozilla.org/show_bug.cgi?id=1411699 https://www.mozilla.org/en-US/security/advisories/mfsa2017-30/#CVE-2017-7848
This is an autogenerated message for OBS integration: This bug (1074045) was mentioned in https://build.opensuse.org/request/show/559659 42.2+42.3+Backports:SLE-12 / MozillaThunderbird
submitted
done
openSUSE-SU-2017:3433-1: An update that fixes four vulnerabilities is now available. Category: security (important) Bug References: 1074043,1074044,1074045,1074046 CVE References: CVE-2017-7829,CVE-2017-7846,CVE-2017-7847,CVE-2017-7848 Sources used: SUSE Package Hub for SUSE Linux Enterprise 12 (src): MozillaThunderbird-52.5.2-51.1
openSUSE-SU-2017:3434-1: An update that fixes four vulnerabilities is now available. Category: security (important) Bug References: 1074043,1074044,1074045,1074046 CVE References: CVE-2017-7829,CVE-2017-7846,CVE-2017-7847,CVE-2017-7848 Sources used: openSUSE Leap 42.3 (src): MozillaThunderbird-52.5.2-53.1 openSUSE Leap 42.2 (src): MozillaThunderbird-52.5.2-41.24.1
This is an autogenerated message for OBS integration: This bug (1074045) was mentioned in https://build.opensuse.org/request/show/590813 42.3 / MozillaThunderbird