Version Historie vonThunderbird 2.0.0.22

Following bugs were fixed

  • Crash viewing multipart/alternative message with text/enhanced part
  • JavaScript chrome privilege escalation
  • Arbitrary code execution using event listeners attached to an element whose owner document is null
  • SSL tampering via non-200 responses to proxy CONNECT requests
  • Crashes with evidence of memory corruption (rv:1.9.0.11)
  • Same-origin violations when Adobe Flash loaded via view-source: scheme
  • Crashes with evidence of memory corruption (rv:1.9.0.9)