Описание
If a MIME encoded email contains an OpenPGP inline signed or encrypted message part, but also contains an additional unprotected part, Thunderbird did not indicate that only parts of the message are protected. This vulnerability affects Thunderbird < 78.10.2.
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 1:78.11.0+build1-0ubuntu0.18.04.2 |
devel | released | 1:78.11.0+build1-0ubuntu2 |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | released | 1:78.11.0+build1-0ubuntu0.20.04.2 |
groovy | released | 1:78.11.0+build1-0ubuntu0.20.10.2 |
hirsute | released | 1:78.11.0+build1-0ubuntu0.21.04.2 |
impish | released | 1:78.11.0+build1-0ubuntu2 |
jammy | released | 1:78.11.0+build1-0ubuntu2 |
kinetic | released | 1:78.11.0+build1-0ubuntu2 |
Показывать по
EPSS
4.3 Medium
CVSS2
4.3 Medium
CVSS3
Связанные уязвимости
If a MIME encoded email contains an OpenPGP inline signed or encrypted message part, but also contains an additional unprotected part, Thunderbird did not indicate that only parts of the message are protected. This vulnerability affects Thunderbird < 78.10.2.
If a MIME encoded email contains an OpenPGP inline signed or encrypted message part, but also contains an additional unprotected part, Thunderbird did not indicate that only parts of the message are protected. This vulnerability affects Thunderbird < 78.10.2.
If a MIME encoded email contains an OpenPGP inline signed or encrypted ...
If a MIME encoded email contains an OpenPGP inline signed or encrypted message part, but also contains an additional unprotected part, Thunderbird did not indicate that only parts of the message are protected. This vulnerability affects Thunderbird < 78.10.2.
Уязвимость почтового клиента Thunderbird, существующая из-за недостаточной реализации мер безопасности, позволяющая нарушителю оказать воздействие на целостность данных
EPSS
4.3 Medium
CVSS2
4.3 Medium
CVSS3