Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-29948

Опубликовано: 24 июн. 2021
Источник: debian
EPSS Низкий

Описание

Signatures are written to disk before and read during verification, which might be subject to a race condition when a malicious local process or user is replacing the file. This vulnerability affects Thunderbird < 78.10.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
thunderbirdfixed1:78.10.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2021-14/#CVE-2021-29948

EPSS

Процентиль: 22%
0.00071
Низкий

Связанные уязвимости

CVSS3: 2.5
ubuntu
около 4 лет назад

Signatures are written to disk before and read during verification, which might be subject to a race condition when a malicious local process or user is replacing the file. This vulnerability affects Thunderbird < 78.10.

CVSS3: 2.5
redhat
больше 4 лет назад

Signatures are written to disk before and read during verification, which might be subject to a race condition when a malicious local process or user is replacing the file. This vulnerability affects Thunderbird < 78.10.

CVSS3: 2.5
nvd
около 4 лет назад

Signatures are written to disk before and read during verification, which might be subject to a race condition when a malicious local process or user is replacing the file. This vulnerability affects Thunderbird < 78.10.

github
около 3 лет назад

Signatures are written to disk before and read during verification, which might be subject to a race condition when a malicious local process or user is replacing the file. This vulnerability affects Thunderbird < 78.10.

CVSS3: 7.8
fstec
больше 4 лет назад

Уязвимость почтового клиента Thunderbird, вызванная ошибками синхронизации при использовании общего ресурса, позволяющая нарушителю обойти существующие ограничения безопасности

EPSS

Процентиль: 22%
0.00071
Низкий