Описание
Decrypted S/MIME parts, when included in HTML crafted for an attack, can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 52.9.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | released | 1:52.9.1+build3-0ubuntu0.17.10.1 |
| bionic | released | 1:52.9.1+build3-0ubuntu0.18.04.1 |
| devel | released | 1:60.2.1+build1-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [1:52.9.1+build3-0ubuntu0.14.04.1]] |
| precise/esm | DNE | |
| trusty | released | 1:52.9.1+build3-0ubuntu0.14.04.1 |
| trusty/esm | DNE | trusty was released [1:52.9.1+build3-0ubuntu0.14.04.1] |
| upstream | released | 52.9.0 |
| xenial | released | 1:52.9.1+build3-0ubuntu0.16.04.1 |
Показывать по
EPSS
4.3 Medium
CVSS2
6.5 Medium
CVSS3
Связанные уязвимости
Decrypted S/MIME parts, when included in HTML crafted for an attack, can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 52.9.
Decrypted S/MIME parts, when included in HTML crafted for an attack, can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 52.9.
Decrypted S/MIME parts, when included in HTML crafted for an attack, c ...
Decrypted S/MIME parts, when included in HTML crafted for an attack, can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 52.9.
Уязвимость функций шифрования Secure/Multipurpose Internet Mail Extentions (S/MIME) и PGP почтового клиента Thunderbird, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
EPSS
4.3 Medium
CVSS2
6.5 Medium
CVSS3