Описание
When aborting the verification of an OTR chat session, an attacker could have caused a use-after-free bug leading to a potentially exploitable crash. This vulnerability affects Thunderbird < 128.2.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | code not present |
esm-infra/focal | DNE | |
focal | not-affected | |
jammy | not-affected | |
noble | not-affected | code not present |
upstream | needs-triage |
Показывать по
Ссылки на источники
6.5 Medium
CVSS3
Связанные уязвимости
When aborting the verification of an OTR chat session, an attacker could have caused a use-after-free bug leading to a potentially exploitable crash. This vulnerability affects Thunderbird < 128.2.
When aborting the verification of an OTR chat session, an attacker could have caused a use-after-free bug leading to a potentially exploitable crash. This vulnerability affects Thunderbird < 128.2.
When aborting the verification of an OTR chat session, an attacker cou ...
When aborting the verification of an OTR chat session, an attacker could have caused a use-after-free bug leading to a potentially exploitable crash. This vulnerability affects Thunderbird < 128.2.
Уязвимость почтового клиента Thunderbird, связанная с использованием памяти после её освобождения, позволяющая нарушителю вызвать отказ в обслуживании
6.5 Medium
CVSS3