Mozilla Products March 2024 1st Security Update Advisory

Overview

 

An update has been made available to address a vulnerability in Mozilla products (Thunderbird version). users of affected products are advised to update to the latest version.

 

Affected Products

 

Thunderbird prior to 115.8.1 

 

Resolved Vulnerabilities

 

A vulnerability exists in Thunderbird that allows the contents of highly-encrypted emails to be leaked to other conversations (CVE-2024-1936) [1]

 

Vulnerability Patches

 

The following Vulnerability Patches were made available in the March 4, 2024 update. For more information on Vulnerability Patches, please refer to the “Mozilla” Referenced Sites documentation.

Thunderbird version 115.8.1

 

Referenced Sites

 

[1] Security Vulnerabilities fixed in Thunderbird 115.8.1

https://www.mozilla.org/en-US/security/advisories/mfsa2024-11/

[2] Update Firefox to the latest release

https://support.mozilla.org/ko/kb/update-firefox-latest-release