thunderbird (1:115.4.1-1) unstable; urgency=medium
* [
c51ab77] New upstream version 115.4.1
Fixed CVE issues in upstream version 115.4.1 (MFSA 2023-47):
CVE-2023-5721: Queued up rendering could have allowed websites to
clickjack
CVE-2023-5732: Address bar spoofing via bidirectional characters
CVE-2023-5724: Large WebGL draw could have led to a crash
CVE-2023-5725: WebExtensions could open arbitrary URLs
CVE-2023-5728: Improper object tracking during GC in the JavaScript
engine could have led to a crash.
CVE-2023-5730: Memory safety bugs fixed in Firefox 119, Firefox ESR 115.4,
and Thunderbird 115.4.1
[dgit import unpatched thunderbird 1:115.4.1-1]