USN-4649-2: xdg-utils regression
12 January 2021
USN-4649-1 introduced a regression in xdg-utils.
- xdg-utils - desktop integration utilities from freedesktop.org
USN-4649-1 fixed vulnerabilities in xdg-utils. That update caused a regression
by removing the --attach functionality in thunderbird and others applications.
This update fix the problem by reverting these changes.
Original advisory details:
Jens Mueller discovered that xdg-utils incorrectly handled certain URI.
An attacker could possibly use this issue to expose sensitive information.
The problem can be corrected by updating your system to the following package versions:
In general, a standard system update will make all the necessary changes.