Описание
textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| claws-mail | fixed | 3.18.0-1 | package | |
| claws-mail | no-dsa | bullseye | package | |
| claws-mail | no-dsa | buster | package | |
| claws-mail | no-dsa | stretch | package | |
| sylpheed | unfixed | package | ||
| sylpheed | postponed | trixie | package | |
| sylpheed | postponed | bookworm | package | |
| sylpheed | no-dsa | bullseye | package | |
| sylpheed | no-dsa | buster | package | |
| sylpheed | no-dsa | stretch | package |
Примечания
https://git.claws-mail.org/?p=claws.git;a=commit;h=ac286a71ed78429e16c612161251b9ea90ccd431
EPSS
Процентиль: 65%
0.00483
Низкий
Связанные уязвимости
CVSS3: 6.1
ubuntu
больше 4 лет назад
textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.
CVSS3: 6.1
nvd
больше 4 лет назад
textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.
github
больше 3 лет назад
textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.
EPSS
Процентиль: 65%
0.00483
Низкий