DSA-6288-1

NameDSA-6288-1
Descriptionthunderbird - security update
SourceDebian
ReferencesCVE-2026-8388, CVE-2026-8391, CVE-2026-8401, CVE-2026-8946, CVE-2026-8947, CVE-2026-8950, CVE-2026-8953, CVE-2026-8954, CVE-2026-8955, CVE-2026-8956, CVE-2026-8957, CVE-2026-8958, CVE-2026-8961, CVE-2026-8962, CVE-2026-8968, CVE-2026-8970, CVE-2026-8974, CVE-2026-8975

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
thunderbird (PTS)bookworm1:140.10.1esr-1~deb12u1vulnerable
bookworm (security)1:140.11.0esr-1~deb12u1fixed
trixie1:140.10.1esr-1~deb13u1vulnerable
trixie (security)1:140.11.0esr-1~deb13u1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
thunderbirdsourcebookworm1:140.11.0esr-1~deb12u1
thunderbirdsourcetrixie1:140.11.0esr-1~deb13u1

Search for package or bug name: Reporting problems