Hello Olivier,

thank you very much for your efforts but I have to bring this up here:
Having "some general friction with following upstream" seems to be an ongoing 
problem with Thunderbird.

Transition from TB 68 to 78 left users of ubuntus latest LTS without security 
updates for over 6 months
https://bugs.launchpad.net/ubuntu/+source/thunderbird/+bug/1895643

From TB 78 to 91 the (un)security gap for (latest) LTS users has been over 4 
months
https://bugs.launchpad.net/ubuntu/+source/thunderbird/+bug/1949605

and now in the transition between TB 91 and 102 we are already over 3
months without security updates.

All this for the at that points of time latest Ubuntu LTS. Older LTS
have/had to wait even longer for security updates.

At the same time unpatched security vulnerabilities and CVEs are popping
up more and more.

I've been watching this misery for years now and I really appreciate
Olivier's efforts, but there seems to be something fundamentally wrong
here.

Besides browsers, mail clients are the second most exposed user
applications and a classic gateway for malware. It is unacceptable that
Thunderbird regularly exists unpatched for so long periods of time. This
sheds a very bad light on Ubuntu's security.

I know that there are optional Snaps but the vast majority of users
stick with the pre-installed programs and are led to believe that they
will receive regular updates this way. And they should be right about
that.

So what can be done to fix this issue once and for all?

/edit: and how long will it take this time?

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to the bug report.
https://bugs.launchpad.net/bugs/1990886

Title:
  Security updates missing after 91.11.0

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/thunderbird/+bug/1990886/+subscriptions


-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to