Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-0430

Опубликовано: 02 июн. 2023
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

Certificate OCSP revocation status was not checked when verifying S/Mime signatures. Mail signed with a revoked certificate would be displayed as having a valid signature. Thunderbird versions from 68 to 102.7.0 were affected by this bug. This vulnerability affects Thunderbird < 102.7.1.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*
Версия от 68.0 (включая) до 102.7.1 (исключая)

EPSS

Процентиль: 22%
0.00071
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-295
CWE-295

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 2 лет назад

Certificate OCSP revocation status was not checked when verifying S/Mime signatures. Mail signed with a revoked certificate would be displayed as having a valid signature. Thunderbird versions from 68 to 102.7.0 were affected by this bug. This vulnerability affects Thunderbird < 102.7.1.

CVSS3: 7.5
redhat
больше 2 лет назад

Certificate OCSP revocation status was not checked when verifying S/Mime signatures. Mail signed with a revoked certificate would be displayed as having a valid signature. Thunderbird versions from 68 to 102.7.0 were affected by this bug. This vulnerability affects Thunderbird < 102.7.1.

CVSS3: 6.5
debian
около 2 лет назад

Certificate OCSP revocation status was not checked when verifying S/Mi ...

rocky
больше 2 лет назад

Important: thunderbird security update

rocky
больше 2 лет назад

Important: thunderbird security update

EPSS

Процентиль: 22%
0.00071
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-295
CWE-295