Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-12397

Опубликовано: 22 мая 2020
Источник: debian

Описание

By encoding Unicode whitespace characters within the From email header, an attacker can spoof the sender email address that Thunderbird displays. This vulnerability affects Thunderbird < 68.8.0.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
thunderbirdfixed1:68.8.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2020-18/#CVE-2020-12397

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 6 лет назад

By encoding Unicode whitespace characters within the From email header, an attacker can spoof the sender email address that Thunderbird displays. This vulnerability affects Thunderbird < 68.8.0.

CVSS3: 4.3
redhat
около 6 лет назад

By encoding Unicode whitespace characters within the From email header, an attacker can spoof the sender email address that Thunderbird displays. This vulnerability affects Thunderbird < 68.8.0.

CVSS3: 4.3
nvd
около 6 лет назад

By encoding Unicode whitespace characters within the From email header, an attacker can spoof the sender email address that Thunderbird displays. This vulnerability affects Thunderbird < 68.8.0.

CVSS3: 4.3
github
около 4 лет назад

By encoding Unicode whitespace characters within the From email header, an attacker can spoof the sender email address that Thunderbird displays. This vulnerability affects Thunderbird < 68.8.0.

CVSS3: 5.3
fstec
около 6 лет назад

Уязвимость почтового клиента Thunderbird, связанная с ошибками при обработке символов Unicode в заголовке сообщения, позволяющая нарушителю подделать адрес электронной почты отправителя