Hi, About CVE-2015-4473, CVE-2015-4487, CVE-2015-4488 and CVE-2015-4489. As same as "DSA-3333-1 iceweasel", icedove should be updated with newer ESR version in Stretch/Sid.
>> Debian follows the extended support releases (ESR) of Firefox. >> Support for the 31.x series has ended, so starting with this update >> we're now following the 38.x releases. Is there any action for it? or just backport package for stable-security is not enough? -- Regards, Hideki Yamane henrich @ debian.or.jp/org http://wiki.debian.org/HidekiYamane