thunderbird (1:115.12.0-1) unstable; urgency=medium
* [
3d303c4] d/c-u-t.py: Ignore one more version
* [
2e7f143] New upstream version 115.12.0
Fixed CVE issues in upstream version 115.12 (MFSA 2024-28):
CVE-2024-5702: Use-after-free in networking
CVE-2024-5688: Use-after-free in JavaScript object transplant
CVE-2024-5690: External protocol handlers leaked by timing attack
CVE-2024-5691: Sandboxed iframes were able to bypass sandbox restrictions
to open a new window
CVE-2024-5692: Bypass of file name restrictions during saving
CVE-2024-5693: Cross-Origin Image leak via Offscreen Canvas
CVE-2024-5696: Memory Corruption in Text Fragments
CVE-2024-5700: Memory safety bugs fixed in Firefox 127, Firefox ESR 115.12,
and Thunderbird 115.12
* [
9afc3a0] d/logo/thunderbird: Update PNG files from newer SVG
(Closes: #
1071824)
* [
a92c8d1] d/thunderbird.install: Install the newer correct SVG graphic
[dgit import unpatched thunderbird 1:115.12.0-1]