RHSA-2022:7021: Important: thunderbird security update
Mozilla Thunderbird is a standalone mail and newsgroup client.This update upgrades Thunderbird to version 102.3.0.Security Fix(es): expat: a use-after-free in the doContent function in xmlparse.c (CVE-2022-40674) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:7021?
RHSA-2022:7021 has been classified as an important security issue.
How do I fix RHSA-2022:7021?
To fix RHSA-2022:7021, upgrade to Thunderbird version 102.3.0-4.el8_1.
What vulnerability does RHSA-2022:7021 address?
RHSA-2022:7021 addresses a use-after-free vulnerability in the expat library identified as CVE-2022-40674.
Which versions of Thunderbird are affected by RHSA-2022:7021?
RHSA-2022:7021 affects all versions of Thunderbird prior to 102.3.0-4.el8_1.
Is there a need to restart after applying the fix for RHSA-2022:7021?
Yes, it is recommended to restart Thunderbird after applying the fix for RHSA-2022:7021.