============================================================================ Ubuntu Security Notice USN-1758-2 March 13, 2013 thunderbird vulnerability ============================================================================ A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 12.10 - Ubuntu 12.04 LTS - Ubuntu 11.10 - Ubuntu 10.04 LTS Summary: Thunderbird could be made to crash or run programs as your login. Software Description: - thunderbird: Mozilla Open Source mail and newsgroup client Details: USN-1758-1 fixed vulnerabilities in Firefox. This update provides the corresponding update for Thunderbird. Original advisory details: It was discovered that Firefox contained a memory safety issue. If a user were tricked into opening a specially crafted page with the HTML editor, a remote attacker could exploit this to execute arbitrary code with the privileges of the user invoking the program. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 12.10: thunderbird 17.0.4+build1-0ubuntu0.12.10.1 Ubuntu 12.04 LTS: thunderbird 17.0.4+build1-0ubuntu0.12.04.1 Ubuntu 11.10: thunderbird 17.0.4+build1-0ubuntu0.11.10.1 Ubuntu 10.04 LTS: thunderbird 17.0.4+build1-0ubuntu0.10.04.1 After a standard system update you need to restart Thunderbird to make all the necessary changes. References: http://www.ubuntu.com/usn/usn-1758-2 http://www.ubuntu.com/usn/usn-1758-1 CVE-2013-0787 Package Information: https://launchpad.net/ubuntu/+source/thunderbird/17.0.4+build1-0ubuntu0.12.10.1 https://launchpad.net/ubuntu/+source/thunderbird/17.0.4+build1-0ubuntu0.12.04.1 https://launchpad.net/ubuntu/+source/thunderbird/17.0.4+build1-0ubuntu0.11.10.1 https://launchpad.net/ubuntu/+source/thunderbird/17.0.4+build1-0ubuntu0.10.04.1