-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Tue, 15 Sep 2026 18:07:30 -0400
Source: thunderbird
Architecture: source
Version: 1:140.16.0esr-1~deb13u1
Distribution: trixie-security
Urgency: medium
Maintainer: Carsten Schoenert <c.schoenert@t-online.de>
Changed-By: Christoph Goehre <chris@sigxcpu.org>
Changes:
thunderbird (1:140.16.0esr-1~deb13u1) trixie-security; urgency=medium
.
* [fc5c7cf] New upstream version 140.16.0esr
Fixed CVE issues in upstream version 140.16 (MFSA 2026-95):
CVE-2026-92238: Ambiguous parsing of mail headers
CVE-2026-92239: Buffer overrun in IMAP
CVE-2026-92240: Out-of-bounds read in IMAP response parser
CVE-2026-92005: Use-after-free in the Audio/Video: Web Codecs component
CVE-2026-92006: Privilege escalation due to incorrect boundary conditions
in the Graphics: CanvasWebGL component
CVE-2026-92007: Privilege escalation due to incorrect boundary conditions
in the Graphics: CanvasWebGL component
CVE-2026-92008: Privilege escalation due to incorrect boundary conditions
in the Graphics: CanvasWebGL component
CVE-2026-92009: Privilege escalation due to incorrect boundary conditions
in the Graphics: CanvasWebGL component
CVE-2026-92010: Privilege escalation due to incorrect boundary conditions
in the Graphics: CanvasWebGL component
CVE-2026-92011: Privilege escalation due to incorrect boundary conditions
in the Graphics: CanvasWebGL component
CVE-2026-92012: Privilege escalation due to incorrect boundary conditions
in the Graphics: CanvasWebGL component
CVE-2026-92013: Privilege escalation due to incorrect boundary conditions
in the Graphics: CanvasWebGL component
CVE-2026-92014: Privilege escalation due to incorrect boundary conditions
in the Graphics component
CVE-2026-92015: Privilege escalation in the WebExtensions component
CVE-2026-92016: Use-after-free in the Disability Access APIs component
CVE-2026-92017: Privilege escalation in the DOM: Service Workers component
CVE-2026-92018: Sandbox escape in the DOM: Core & HTML component
CVE-2026-92019: Mitigation bypass in the Remote Settings Client component
CVE-2026-92020: Privilege escalation due to incorrect boundary conditions
in the Graphics: WebRender component
CVE-2026-92021: Use-after-free in the JavaScript Engine: JIT component
CVE-2026-92022: Use-after-free in the DOM: HTML Parser component
CVE-2026-92023: Use-after-free in the XML component
CVE-2026-92024: Use-after-free in the SVG component
CVE-2026-92025: Use-after-free in the DOM: Navigation component
CVE-2026-92026: Use-after-free in the Networking component
CVE-2026-92027: Use-after-free in the DOM: Streams component
CVE-2026-92028: Use-after-free in the DOM: Core & HTML component
CVE-2026-92029: Use-after-free in the SVG component
CVE-2026-92030: Mitigation bypass in the DOM: Copy & Paste and Drag & Drop
component
CVE-2026-92031: Information disclosure in the Graphics: ImageLib component
CVE-2026-92032: Sandbox escape due to invalid pointer in the Graphics
component
Checksums-Sha1:
18e774af37389ab39cee37501fea93f319ce3016 8496 thunderbird_140.16.0esr-1~deb13u1.dsc
a99f5a942fd364679efa24c570cfca38abf4cccf 12280168 thunderbird_140.16.0esr.orig-thunderbird-l10n.tar.xz
03325d013f0a9ae6050d6ab7344478f043c5a2cd 787030592 thunderbird_140.16.0esr.orig.tar.xz
01cd37b2a1392b6f4411630d462f000e0ac16bbb 572776 thunderbird_140.16.0esr-1~deb13u1.debian.tar.xz
Checksums-Sha256:
ad16f07fb4842d383634bfa26f11d9b27ccecbf7b32e4492371a5c3fe43ef72d 8496 thunderbird_140.16.0esr-1~deb13u1.dsc
a2456d0a913da5f45e63ec329f8934402dbc8394c922c8606e84753304adf98b 12280168 thunderbird_140.16.0esr.orig-thunderbird-l10n.tar.xz
a49e12e468864ab7df1fcc7ac703110f17cacee61ab796bb1b7be5bb21e45dc7 787030592 thunderbird_140.16.0esr.orig.tar.xz
5980ce7d1dbeeac6f38a908a4b778435e12c7c124f60f1f90774a109c966a8e5 572776 thunderbird_140.16.0esr-1~deb13u1.debian.tar.xz
Files:
7593e2fe5c569b01263e954cca8be830 8496 mail optional thunderbird_140.16.0esr-1~deb13u1.dsc
767effd5d65c1f3c8c57fa620579b0d8 12280168 mail optional thunderbird_140.16.0esr.orig-thunderbird-l10n.tar.xz
9755b10a7509b3192a70cd7e337d7b06 787030592 mail optional thunderbird_140.16.0esr.orig.tar.xz
24eb5e4c86273f994f1765422326a812 572776 mail optional thunderbird_140.16.0esr-1~deb13u1.debian.tar.xz
-----BEGIN PGP SIGNATURE-----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=Pewf
-----END PGP SIGNATURE-----